The system architecture is like this: A PIX firewall with a global public IP and inside is the private network. A remote locationn will try to access to the firewall via VPN connection.
1) What is the crypto dynamic-map used for? For a VPN, is the crypto map an optional or a MUST?
2) In order to disable the statement of:
access-list outside_cryptomap_dyn_20 line 1 permit ip any 10.10.10.0 255.255.255.248
--What are the differences between use statements a) and b) as follows, which is better:
a)no crypto dynamic-map dynamic-map-outside 20 match address outside_cryptomap_dyn_20
b) no access-list outside_cryptomap_dyn_20 line 1 permit ip any 10.10.10.0 255.255.255.248
Thanks to help.