Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Access To VPN external over PIX

In my internal network a PC need connect by vpn with one peer in external network for access to aplication in other company.

The tecnical support say me that i need configure access to ip external.

IPSec ESP (IP protocol number 50)

ISAKMP / Oakley (IP protocol number 17)

ISAKMP / Oakley (UDP port 500)

I configure that, but no function.

access-list dmz4 extended permit udp host 1.1.1.1 host 192.165.1.1 eq isakmp

access-list dmz4 extended permit esp host 1.1.1.1 host 192.165.1.1

After i configure:

access-list dmz4 extended permit ip host 1.1.1.1 any

and don`t function neither

The technical support say:

That i need configure a nat one to one and don`t use pat.

What do you think about it?

2 REPLIES
Green

Re: Access To VPN external over PIX

Which address here is your local pc and which is the remote peer?

access-list dmz4 extended permit udp host 1.1.1.1 host 192.165.1.1 eq isakmp

access-list dmz4 extended permit esp host 1.1.1.1 host 192.165.1.1

New Member

Re: Access To VPN external over PIX

1.1.1.1 local pc

192.165.1.1 remote peer

239
Views
0
Helpful
2
Replies