Terminate IPsec on one of the ports of HWIC-4ESW (through VLAN)

Hi,
It's not clear to me whether it's possible to terminate IPSec on one of the ports of HWIC-4ESW (through VLAN)? The document on the link below suggests that it supports L3 with limitations but it's short in mentioning whether IPsec is one of the limitations.
http://www.cisco.com/en/US/customer/products/ps5855/products_qanda_item0900aecd8016c026.shtml
Thanks.
Regards, Archie

Yes, you can terminate IPSec on HWIC-4ESW .
here sample config:
interface Vlan100
description crypto int vlan
ip address 10.10.100.100 255.255.255.0
crypto map mymap
interface FastEthernet 0/0/1
description int for crypto vlan int
switchport access vlan 100
no ip address
duplex full
speed 100

Similar Messages

  • With STP one of the port of the access switch connecting to the backup path should be blocked

    Dear All,
    I have setup my LAN with one L3 cisco 3750 and have 2 2960 as access switch. The two access switch are connected to the L3 switch directly  and two access switch connected back to back for redundancy. There one VLAN configured between all these switches.
    When I checked the show spanning-tree one of the access switch the ports is correct as below,
    sw1#sh spa
    VLAN0005
      Spanning tree enabled protocol ieee
      Root ID    Priority    24581
                 Address     0001.4353.DB5A
                 Cost        4
                 Port        25(GigabitEthernet1/1)
                 Hello Time  2 sec  Max Age 20 sec  Forward Delay 15 sec
      Bridge ID  Priority    32773  (priority 32768 sys-id-ext 5)
                 Address     0001.C760.93AC
                 Hello Time  2 sec  Max Age 20 sec  Forward Delay 15 sec
                 Aging Time  20
    Interface        Role Sts Cost      Prio.Nbr Type
    Gi1/1            Root FWD 4         128.25   P2p
    Gi1/2            Altn BLK 4         144.26   P2p
    whereas the in the other L2 switch both the port are in forwarding state. 
    sw2#sh spanning-tree 
    VLAN0005
      Spanning tree enabled protocol ieee
      Root ID    Priority    24581
                 Address     0001.4353.DB5A
                 Cost        4
                 Port        25(GigabitEthernet1/1)
                 Hello Time  2 sec  Max Age 20 sec  Forward Delay 15 sec
      Bridge ID  Priority    32773  (priority 32768 sys-id-ext 5)
                 Address     0001.4256.9A77
                 Hello Time  2 sec  Max Age 20 sec  Forward Delay 15 sec
                 Aging Time  20
    Interface        Role Sts Cost      Prio.Nbr Type
    Gi1/1            Root FWD 4         128.25   P2p
    Gi1/2            Desg FWD 4         144.26   P2p
    I want the redundant port to be blocked state. I tried changing the port priority of the access switch but did not yield any result.
    Request for support.
    Easwar

    Hi Easwar,
    What you see is STP working properly, and the port roles and states are exactly as they should be. Even on a redundant link between switches, exactly one port must be a Designated port in the Forwarding state. STP never blocks a redundant link between switches on both ends. First, it is not necessary to prevent loops: as long as your Sw1 has its port in the Blocking state, it will not be using that link to forward data. Second, if there was an unmanaged switch connected between Sw1 and Sw2 with some stations attached, and both Sw1 and Sw2 had their ports in the Blocking state, the stations connected to this unmanaged switch would be entirely cut off from the network.
    Is there any particular reason why you want the port to be blocking?
    Best regards,
    Peter

  • One of the ports on my Mac mini is no longer working.

    My iphone doesn't update or sync when I connect it.  What can I do?

    The ports have overload protection in case of a short or overload condition and can generally be restored by resetting the SMC.
    See > Resetting the System Management Controller (SMC) only wait 5 minutes in step 3 instead of 15 seconds.
    1. Shut down the computer.
    2. Unplug the computer's power cord.
    3. Wait fifteen seconds. 5 minutes
    4. Attach the computer's power cord.
    5. Wait five seconds, then press the power button to turn on the computer.

  • Specify the port number to go through the firewall

    I noticed the ibm application server gives option to specify the listener port for EJB using this parameter -Dcom.ibm.CORBA.ListenerPort=8888 .
    Can I do the same thing for Sun Application Server?

    org.omg.CORBA.ORBInitialPort
    This is only for the initial connection. After the ejb container receives the call, it is going to communicate with the connecting client using random port number.

  • How to check the port status in IPSec VPN

    Hi Experts,
    Is there any way by which we can find that the UDP port 500 is blocked at ISP side.
    My IPSec VPN configured between two cisco router in production network is not coming up and experts are saying that the ISP has blocked the port 500 somewhere in between, however ISP denying and saying that they dont block any port.
    kindly suggest what whould be the best wayout?
    Thanks

    Thanks Marvin,
    How could I capture the traffic from initiating peer so that I can figure out that UDP port 500 is blocked or not, with the help of wireshark...
    In my network ONT/Modem (having four ethernet port) is installed at both the end and from one of its port the router is connected at each side and IPSec VPN is configured between the router. to check the UDP port status, my question is, should i connect my laptop (running with wireshark) with one of the port of ONT and capture the traffice or is there any other way and how that traffice will tell me that port 500 is blocked or not?

  • Trying to connect an 8-port switch to one of the 3 ports on Time Capsule

    but even the "connectivity" light is unlit.
    cable modem into house gets patched to where i want TC for best signal.
    using other ports to connect directly to MacBooks or PC give full gig speed
    trying to patch one of the ports back to basement and into linksys 8 port gigabit switch that disperses to:
    Two Wired Tivo Series 2 boxes (cause the wireless using WEP was too annoying)
    additional PCs in various rooms.
    anyone know how to address? all devices that need cabling through house are useless for now

    This should work no problem - I've got a Pluscom gigabit switch connected to my TC. Previously had a USR 10/100 switch.
    What happens if you connect the switch directly to the modem (with all the other devices disconnected, except for one computer)?
    Has the switch worked previously, or is it new?
    Has the cabling worked previously?
    Since the TC's ethernet ports work with other devices, the fault must lie with the cabling or the switch. Try connecting the switch to the TC using a known working cable.

  • Can't put back a screw on the port side

    I tried putting my MacBook back together and I accidentally put a wrong screw in one of the port side holes. I managed to get it out, now I can't put the right one in. How can I fix this?

    David in AZ wrote:
    When you say the wrong screw do you mean a screw that was of larger size? If so, you may have stretched out the hole and can't reapply the correct screw...
    I think that's the case.

  • The ports has been used

    Hi,
    I am uninstalling my messaging 5.2 using ./uninstall. After uninstall process completed, i used rm -R to manually remove the ims folder. Then I tried to install messaging again but half way of the installation it will show me that pop, imap and smtp port has been used, i need to assign other ports to them. If i continue to use default ports, it will prompt me the ports have been used, but if i assigned other ports to them, the installation can complete successfully.
    May I know what is happening? I have checked /etc, there is no msgregistry.inf file. What other files that should i remove? Please help.. thank you.

    The problem is that the software is probably still running from your previous install attempt. You can telnet to one of the ports to see if this is the case, e.g.
    telnet <mailserver> 110Should return something like:
    Trying 111.222.333.444...
    Connected to mail.siroe.com.
    Escape character is '^]'.
    +OK mail.siroe.com POP3 service (Sun Java(tm) System Messaging Server 6.2-4.03 (built Sep 22 2005))If that is the case, do a ps -fu <mailserveruser> and kill -9 the processes returned.
    Michael
    Hi,
    I am uninstalling my messaging 5.2 using ./uninstall.
    After uninstall process completed, i used rm -R to
    manually remove the ims folder. Then I tried to
    install messaging again but half way of the
    installation it will show me that pop, imap and smtp
    port has been used, i need to assign other ports to
    them. If i continue to use default ports, it will
    prompt me the ports have been used, but if i assigned
    other ports to them, the installation can complete
    successfully.
    May I know what is happening? I have checked /etc,
    there is no msgregistry.inf file. What other files
    that should i remove? Please help.. thank you.

  • Two new iPhones. One for the wife one for me.  How do we share apps

    I have two computers. One is my wife's and one is mine. My new phone is synced with my itunes and my computer and the other phone is synced her to itunes on her computer. Question is that we only by music on one of the two compters and then through our home network we share. How does it work with apps? Will the apps I buy for one iPhone transfer to the other iphone, or do I have to buy it twice?

    Each user can select the music and/or apps that he/she wants. Once selected, iTunes will remember which songs an apps each user has selected next time the phone gets sync'd.
    Apps that are on either phone, but not on the computer, will be added to the apps on that computer. This allows the second phone to get the app.

  • TS1424 I down loaded an album and one of the songs won't play but I can't download just that one song w/o downloading the whole album, what do i do ?

    I downloaded an album and one of the songs did not come through very well and will only play 1 min on my itunes and ipod. I can only download the song again by downloading the whole album. what do I do?

    I'd report the problem to the iTunes Store.
    Log in to the Store. Click on "Account" in your Quick Links. When you're in your Account information screen, go down to Purchase History and click "See all".
    Find the item that is not playing properly. If you can't see "Report a Problem" next to the entry, click the "Report a problem" button. Now click the "Report a Problem" link next to the item.
    (Not entirely sure what happens after you click that link, but fingers crossed it should be relatively straightforward.)

  • Presales: HWIC-4ESW= on 2821 to increase Ethernet port?

    Hi there,
    I was not able to receive help from Cisco partner and distributor so I'm hoping that I'll get response from here.
    We have CISCO2821-V3PN/K9 whose two Gigabit ports are already used. I need additional Ethernet port to connect the router to the Internet Leased Line.
    Below "appears to be" the right product but the module is a switch which to my understanding is meant for connecting to the inside LAN rather than to the Internet.
    HWIC-4ESW= Four port 10/100 Ethernet switch interface card
    Grateful if someone could shed some light and give me the right product (part no.) we need to buy.
    Thanks in advance.
    Archie

    Hello Archie,
    a configuration for a VLAN on your 2821 would look like this:
    interface Vlan2
    ip address 192.168.1.1 255.255.255.0
    You can assign that VLAN, 2 in this case, to one of the switchports, just like you would assign it to a ´normal´, or better, external switch:
    interface FastEthernte0/1/0
    switchport access vlan 2
    Here is a link that provides information regarding VLANs in conjunction with the HWIC:
    How to Configure EtherSwitch HWICs
    http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a00804554c7.html#wp1027188
    For more general information regarding VLANs, chekc this document:
    Creating and Maintaining VLANs
    http://www.cisco.com/en/US/products/hw/switches/ps646/products_configuration_guide_chapter09186a00800c9fd8.html
    HTH,
    GP

  • How do I configure the Airport utility to allow more than one rule per port?

    How do I configure the Airport Utility (AU) to allow more than one rule per port?
    I am on a home network, with broadband cable modem.  I have my airport extreme connected to the broadband modem.  I have 2 servers in my home that need to be accessed remotely from time (SSH), and they also serve data for an iphone app, so I'm using a variety of protocols.  The problem I'm running into is that AU seems to only allow one rule per protocol, so if I go to add another address for access on a specific port that is being used by one of my servers, AU tells me "The Port Mapping Entry Already Exists". 
    I need to be able to allow SSH on both of my servers, for instance.  Am I missing something?  Is this doable with AU?
    Thanks for any insight.
    Khalid

    The Port Mapping "rules" on the AirPorts will allow you to: 1. Map a single port to a single IP address OR 2) Map multiple ports to a single IP address.
    What you won't be able to do is map a single or multiple ports to multiple IP addresses.

  • I need to connect my iPad to a projector and USB ports. What do I need to do this and where can I get the suitable fittings? I really need to have more than one USB connection port. Help

    I need to connect my iPad to a projector and have USB ports. What do I need to do this and where can I get the suitable fittings? I really need to have more than one USB connection port. Help

    You can connect via a cable or wireless using an Apple TV.
    http://ipad.about.com/od/iPad_Guide/a/How-To-Connect-Your-Ipad-To-Your-Tv.htm
    Connect an iPad to a Television or Projector
    http://www.everymac.com/systems/apple/ipad/ipad-faq/how-to-connect-ipad-to-tv-te levision-projector.html
    Connecting iPad iPhone or iPod to TV or Projector
    http://www.disabled-world.com/assistivedevices/computer/ipad-tv.php
    iPad Accessories: Connections for a TV or Projector
    http://www.dummies.com/how-to/content/ipad-accessories-connections-for-a-tv-or-p rojector.html
    You may be interested in AirPlay on the Apple TV:
    http://www.apple.com/airplay/
    Alternately, there are Apple Digital AV Adapters for hardwired connections:
    http://support.apple.com/kb/ht4108
    If your location does’t have wifi to use with the Apple TV, use a portable router.
    Portable routers http://compnetworking.about.com/od/routers/tp/travel_routers.htm
     Cheers, Tom

  • I have a Mac OSX version 10.75 with just one Thunderbolt port. and it has been my Thunderbolt port to connect with Blackmagic wear my intensity. and I no longer can use the port for mini-DVI adapter to connect with me. I do not want to ask any other way f

    i have a Mac OSX version 10.75 with just one Thunderbolt port. and it has been my Thunderbolt port to connect with Blackmagic wear my intensity. and I no longer can use the port for mini-DVI adapter to connect with me. I do not want to ask any other way for me to use to use my monitor. I monitor LG FLATRON E2041 brand .. PLEASE Helpp ME

    i have a Mac OSX version 10.75 with just one Thunderbolt port. and it has been my Thunderbolt port to connect with Blackmagic wear my intensity. and I no longer can use the port for mini-DVI adapter to connect with me. I do not want to ask any other way for me to use to use my monitor. I monitor LG FLATRON E2041 brand .. PLEASE Helpp ME

  • Please explain me, how to remove an usb stick or memory chip? With experiences only in pc:s, I do not find on my first apple e.g. MacBook Air a solution. Until now I have succeeded to destroy one chip full of photos and - there's no life more in the port.

    Please explain me, how to remove an usb stick or memory chip? With experiences only in pc:s, I do not find on my first apple e.g. MacBook Air a solution. Until now I have succeeded to destroy one chip full of photos and - there's no life more in the port...
    Someone told me just to remove the chip in clicking it to the trash can and voilá - it would be done. But as I did so, on the screen appeared a text which let me know, that that way had been the wrong one...
    I should have clicked Finder plus something.... which I do not now remember but which was then not found behind the Finder.
    So please would someone be so kind and tell me, where I can find explanations for the most simple functions. The manual I got does not include a clue.
    Thank you!

    First make sure that no application is using or has open any files on the disk. Then:
    Click and drag the disk icon on the desktop to the trash. Wait for the system to recognize the action, and the icon should disappear from the desktop. It is then safe to remove the device.
    Alternatively, you can secondary click on the disk icon, and then primary click "Eject (name of disk)". Wait for the icon to disappear off the desktop, and then it is safe to remove the drive.
    Here is a detailed help document on the subject.
    http://docs.info.apple.com/article.html?path=Mac/10.7/en/mchlp1056.html

Maybe you are looking for

  • MS Word Issue ( It's general issue)

    Hi All, I am facing the following problem with MS word. Normally we attaché graph and code screen shots in the Technical design documnets(TDD). The size of one of the TDD became 33MB and as a result it got corrupted. We are not able to open it. This

  • Can't see picture files or Application icons in Finder?

    I transferred a lot of files from my Windows 7 PC to my new iMac, and saw all of the thumbs.db files. So I used Spotlight search to find them all, then I deleted them all and cleared out my trash. Now no picture files or Application icons show up on

  • Storing an array permanently

    Hi, Is there a way of storing an array permanently, so that it stays saved somewhere in a file or something? I need to create an application that stores this array and reads the values from it, without having to re-create the array everytime I run th

  • Verizon Navigator after ICS Update is Annoying!!!

    Is there anyway to disable or remove this pest? Everytime I dock my phone in the car this thing comes up asking me to accept the terms of service for its use which I have to decline everytime. It always comes up before Motorola's Car Dock. I need to

  • How to transfer photos/film from Mac mini to memory stick

    mac mini late 2012 processor 2.3 Ghz intel core 7 memory 8 Gb software OS X maverick Can somebody tell me how to traNSFER PHOTOS AND MOVIES FROM  MAC MINI TO SD OR MEMORY STICK? Thank You <E-mail Edited by Host>