...
AnyConnect MTU setting under remote access group-policy is not reflected in LINA CLI. We expect following lines to be pushed to LINA when you specify AnyConnect MTU value under group-policy: group-policy DfltGrpPolicy attributes ... webvpn anyconnect mtu 1400 However webvpn part of group-config doesn't contain anyconnect mtu part. Example CLI snippet: group-policy DfltGrpPolicy attributes ... webvpn anyconnect keep-installer none anyconnect modules value dart anyconnect profiles value ikev2af type user anyconnect ask none default anyconnect
Non-default AnyConnect MTU setting under group-policy which has only IKEv2 protocol enabled.
Enable both SSL and IKEv2 for group-policy, so that AnyConnect attributes are pushed to CLI.
Some customers prefer to keep firewall policies as strict as possible, so enabling SSL under group-policy which is supposed only to work for IKEv2 clients can be problematic.
Click on a version to see all relevant bugs
Cisco Integration
Learn more about where this data comes from
Bug Scrub Advisor
Streamline upgrades with automated vendor bug scrubs
BugZero Enterprise
Wish you caught this bug sooner? Get proactive today.