I've got a 2651xm router acting as an easy VPN server to allow me access onto my network - all works great.
I'm living abroad and want to be able to configure the router to allow 'internet on a stick' functionality - by adding a loopback interface etc etc.
My question is - can I have multiple (and I dont know if the word is policies, group-maps, crypto map's etc etc) so that I can connect one way so that I can still get on my internal network, and connect another way for when I want to use 'internet on a stick' ?
I dont know at which level I need the additional configuration - is it a new crypto isakmp policy, is it a new crypto map ?? My current VPN configuration is as follows...
crypto isakmp policy 1
crypto isakmp client configuration group ezvpn
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto dynamic-map SDM_DYNMAP_1 1
set security-association idle-time 3600
set transform-set ESP-3DES-SHA
crypto map SDM_CMAP_1 client authentication list sdm_vpn_xauth_ml_1
crypto map SDM_CMAP_1 isakmp authorization list sdm_vpn_group_ml_1
crypto map SDM_CMAP_1 client configuration address respond
crypto map SDM_CMAP_1 65535 ipsec-isakmp dynamic SDM_DYNMAP_1
ip address 220.127.116.11 255.255.248.0
ip nat outside
crypto map SDM_CMAP_1