Depressed my ASA 5505 can't do IPV6 tunnels
itdaddy
Member Posts: 2,089 ■■■■□□□□□□
The ASAs don't support basic tunnels, they only support IPSec tunnels (The ASA doesn't run IOS). It would be neat if he.net supported IPSec tunnels and then I'd try out my 5505 (If someone at he.net wants to try this I'm game to beta it). In the mean time I'm IPv4 only at home.
read the above from a HE.net forum..they are big into ipv6 tunneling...I so pissed...
do not get an ASA 5505 if you want to do a tunnel to an IPV6 relay and access the ipv6 world. you can do it with say a cisco router that has ipv6. but not and ASA 5505..
I bought it thinking it would what lesson I learned....very disapointed in cisco or myself for that matter ASSUMing it would work..you know what they say about assuming
Arse out of me......grrrrrrrrrrrrrrrrrrrrrrrrrrrr
can someone just lie to me and says it works give me a fake config and i try it and magically it works grrrrrrrrrrrrrrrrrr!
read the above from a HE.net forum..they are big into ipv6 tunneling...I so pissed...
do not get an ASA 5505 if you want to do a tunnel to an IPV6 relay and access the ipv6 world. you can do it with say a cisco router that has ipv6. but not and ASA 5505..
I bought it thinking it would what lesson I learned....very disapointed in cisco or myself for that matter ASSUMing it would work..you know what they say about assuming
Arse out of me......grrrrrrrrrrrrrrrrrrrrrrrrrrrr
can someone just lie to me and says it works give me a fake config and i try it and magically it works grrrrrrrrrrrrrrrrrr!
Comments
-
EdTheLad Member Posts: 2,111 ■■■■□□□□□□I dont know what your talking about, it works fine for me.Are you sure your running the latest ios?Networking, sometimes i love it, mostly i hate it.Its all about the $$$$
-
itdaddy Member Posts: 2,089 ■■■■□□□□□□EdTheLand
I am running ASA 5505 with 7.2(4) software version
Everyone on the HE.net forum says so...man can you help me..my email is robert@itdaddy.net I cannot for the life of me find any good references..I really want to get this going..if you have time I can send you my config thru the email if you have time so I can see how to config my tunnel.and I have some questions to ask you on how it all works. like do i have have clients on my LAN config with ipv6 addresses as well as ipv4?
stuff like that. and will i be able to have both ipv4 and ipv6 access?
I just read abunch on hurricane electric forum saying you have to put a router in front
of the asa 5505 which i think is crap! I should be able to tunnel to he.net but they say
he.net doesnt have IPSEC tunnel capablity. what do you think Edtheland lay it on me brother!
Robert
thanks for replying..
asa(config)# sh ver
Cisco Adaptive Security Appliance Software Version 7.2(4)
Device Manager Version 5.2(4)
Compiled on Sun 06-Apr-08 13:39 by builders
System image file is "disk0:/asa724-k8.bin"
Config file at boot was "startup-config"
asa up 20 hours 35 mins
Hardware: ASA5505, 256 MB RAM, CPU Geode 500 MHz
Internal ATA Compact Flash, 128MB
BIOS Flash M50FW080 @ 0xffe00000, 1024KB
Encryption hardware device : Cisco ASA-5505 on-board accelerator (revision 0x0)
Boot microcode : CNlite-MC-Boot-Cisco-1.2
SSL/IKE microcode: CNlite-MC-IPSEC-Admin-3.03
IPSec microcode : CNlite-MC-IPSECm-MAIN-2.05
0: Int: Internal-Data0/0 : address is 001d.704e.0a4f, irq 11
1: Ext: Ethernet0/0 : address is 001d.704e.0a47, irq 255
2: Ext: Ethernet0/1 : address is 001d.704e.0a48, irq 255
3: Ext: Ethernet0/2 : address is 001d.704e.0a49, irq 255
4: Ext: Ethernet0/3 : address is 001d.704e.0a4a, irq 255
5: Ext: Ethernet0/4 : address is 001d.704e.0a4b, irq 255
6: Ext: Ethernet0/5 : address is 001d.704e.0a4c, irq 255
7: Ext: Ethernet0/6 : address is 001d.704e.0a4d, irq 255
8: Ext: Ethernet0/7 : address is 001d.704e.0a4e, irq 255
9: Int: Internal-Data0/1 : address is 0000.0003.0002, irq 255
10: Int: Not used : irq 255
11: Int: Not used : irq 255
Licensed features for this platform:
Maximum Physical Interfaces : 8
VLANs : 3, DMZ Restricted
Inside Hosts : 10
Failover : Disabled
VPN-DES : Enabled
VPN-3DES-AES : Enabled
VPN Peers : 10
WebVPN Peers : 2
Dual ISPs : Disabled
VLAN Trunk Ports : 0
This platform has a Base license.
Serial Number: JMX1226Z2U3
Running Activation Key: 0x861e7354 0xb8caf258 0x84f28da4 0xa7b8e060 0x83379a93
Configuration register is 0x1
Configuration has not been modified since last system restart.
-
EdTheLad Member Posts: 2,111 ■■■■□□□□□□You asked me to lie so i did .
Ops i forgot the config.
hostname gullible
int fa0/1
description Cant belive you feel for thatNetworking, sometimes i love it, mostly i hate it.Its all about the $$$$ -
mikej412 Member Posts: 10,086 ■■■■■■■■■■I just read abunch on hurricane electric forum saying you have to put a router in front of the asa 5505 which i think is crap!
If you don't have a router in front of your ASA, then why don't you tunnel from a router BEHIND your ASA?:mike: Cisco Certifications -- Collect the Entire Set! -
itdaddy Member Posts: 2,089 ■■■■□□□□□□Mike
it is crap becuase it is so much setup. I mean the asa 5505 should work as a front-end/bridgehead type setup...it comes with ipv6 cabability and even routing why doesnt it work..it is suppose to have tons of bells and whistles...
on the second not note you said..You mean I can put it behind it? hum! that is still a bunch of setup but I guess what I make s static entry to the router behind it to portforward ipv6 traffice to the tunnel setup on my SOHO 831?
I guess I just dont have enough info on how to do this i guess it will be piece work.
I have not found anyone who has done this and I dont know where to look?
I have just found nay sayers. So mike I can static route ipv6 to my inside
and to the 831 soho and then tunnel from there? to HE.net?
and do I have to have IPV6 clients or does the 831 translate my ipv4 addresses to ipv6 addresses
thank EdTheLand I am so gullible you reallygotme! man what a dork I am
thanks guys