×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

Help downgrading config from 8.3 to 8.2

Unanswered Question
May 7th, 2014
User Badges:

I have a client using an old 8.2 IOS version of an ASA and I need to convert some of our standard configurations to 8.2 so it will work with his device.

 

 am unfamiliar with 8.2, so I am wondering if someone can give me the equivalent of the following 8.3 configuration in 8.2 format.

 

object-group network remote-networks
 network-object 10.10.5.0 255.255.255.240
 exit
object-group network local-networks
 network-object 10.42.11.0 255.255.255.0
 exit


access-list vpn-acl extended permit ip object-group local-networks object-group remote-networks

nat (inside,outside) source static local-networks local-networks destination static remote-networks remote-networks

 

Any help appreciated!

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Marvin Rhoads Wed, 05/07/2014 - 10:07
User Badges:
  • Super Silver, 17500 points or more
  • Hall of Fame,
  • Cisco Designated VIP,

    2017 Firewalling, Network Management, VPN

It looks like a partial config covering exemption of NAT for a site-site VPN. We would typically use something like:

access-list inside_nat0_outbound extended permit ip 10.10.5.0 255.255.255.240
10.42.11.0 255.255.255.0 
nat (inside) 0 access-list inside_nat0_outbound

A more complete setup can be seen in this Cisco example for site-site VPN (based on ASA 8.0).

Actions

This Discussion