09-09-2010 05:53 AM - edited 03-11-2019 11:37 AM
These are not wroking for me. Please help
Setting on PIX 506:--
access-list 101 permit ip 192.168.20.0 255.255.255.0 192.168.12.0 255.255.254.0
sysopt connection permit-ipsec
crypto ipsec transform-set itsuport esp-des esp-md5-hmac
crypto map transam 1 ipsec-isakmp
crypto map transam 1 match address 102
crypto map transam 1 set peer x.x.x.x
crypto map transam 1 set transform-set itsuport
crypto map transam interface outside
isakmp enable outside
isakmp key IT5ngr13v address x.x.x.x netmask 255.255.255.255
isakmp identity address
isakmp policy 1 authentication pre-share
isakmp policy 1 encryption des
isakmp policy 1 hash md5
isakmp policy 1 group 1
isakmp policy 1 lifetime 1000
thanks
Amardeep Rana
09-09-2010 06:00 AM
Hi Amardeep,
I see that your crypto map is configured to match ACL 102, but the ACL you posted is 101--was that just a typo?
Also, can you post the configuration on the ASA side as well?
-Mike
09-09-2010 06:02 AM
Also, this link may help you--it shows config examples for a site-to-site tunnel between a PIX and an ASA 5505:
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080950890.shtml
Hope that helps.
-Mike
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide