cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
379
Views
0
Helpful
2
Replies

Access To VPN external over PIX

griffith2009
Level 1
Level 1

In my internal network a PC need connect by vpn with one peer in external network for access to aplication in other company.

The tecnical support say me that i need configure access to ip external.

IPSec ESP (IP protocol number 50)

ISAKMP / Oakley (IP protocol number 17)

ISAKMP / Oakley (UDP port 500)

I configure that, but no function.

access-list dmz4 extended permit udp host 1.1.1.1 host 192.165.1.1 eq isakmp

access-list dmz4 extended permit esp host 1.1.1.1 host 192.165.1.1

After i configure:

access-list dmz4 extended permit ip host 1.1.1.1 any

and don`t function neither

The technical support say:

That i need configure a nat one to one and don`t use pat.

What do you think about it?

2 Replies 2

acomiskey
Level 10
Level 10

Which address here is your local pc and which is the remote peer?

access-list dmz4 extended permit udp host 1.1.1.1 host 192.165.1.1 eq isakmp

access-list dmz4 extended permit esp host 1.1.1.1 host 192.165.1.1

1.1.1.1 local pc

192.165.1.1 remote peer

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card