Guest

Preview Tool

Cisco Bug: CSCuj50371 - VSA : Encryption Failure with IPsec HA and SSO

Last Modified

Feb 13, 2018

Products (1)

  • Cisco 7200 Series Routers

Known Affected Releases

15.1(4)M6.10 15.2(4)M4.3

Description (partial)

Symptom:
Cisco 7200 series router with VSA fails to encrypt traffic for IPsec HA/SSO based VPN tunnels. The tunnels can decrypt traffic successfully though.

Conditions:
This symptom is observed under the following conditions:
- The router has IPsec HA configured [HSRP, redundancy/SSO] as described here:
http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6586/ps6635/white_paper_c11_472859.html

eg: crypto map map-name [redundancy standby-group-name [stateful]]

- Some of the known affected IOS include 15.1.4M8, 15.1.4M6, 15.2.4S3.1, 15.2.4M4.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.