Backup WAN connection ezvpn problems

Unanswered Question
Mar 13th, 2007
User Badges:

Hello ,

I have the following problem. I've got router 1811 wich is ezvpn client , and a 2811 wich is VPN concetrator. The 1811 primary WAN connection is leased line , backup connection is wireless. Ezvpn client is configured on the second connection interface with connect acl for interesting traffic. I also have configured Ip sla monitor with PBR for icmp echo , and RTR to monitor this WAN connection and back it up trough another if primary fails with floating routes.


Now i've got the problem with acl in the ezvpn client configuration , because it's matches in both direction incoming and outgoing traffic. I need only outgoing match for interesting traffic.


Any suggestions ? Also how acl works in this case , is it as normal acl but installed for in and out , and how i can control acl to take interestting traffic ony for outgoing traffic ?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
thomas.chen Mon, 03/19/2007 - 06:37
User Badges:
  • Silver, 250 points or more

I think, as you have mentioned, that since you have configured the ACL in both directions IN and OUT, so it is matching traffic in both directions. Applying the ACL only in OUT direction will solve the problem.

Following link may help you:

http://www.cisco.com/en/US/products/hw/routers/ps221/prod_configuration_guide09186a008007cfa7.html#wp100722

Actions

This Discussion