A simple question that hope not too complicate answer.
Branch offices the use various ISP VPN into HQ VPN 7200 inside tunnel is private IP address space 192.168.X.X
There is a branch office the use 2611 VPN tunnel to our HQ VPN 7200. The branch moved to differently location that would be on total differently ISP that have new IP address.
My question is what part of configuration that I should change in order to make this VPN tunnel into our 7200. The configuration is made before my time there is no document to refering back on the configuration. The change I willmade only with the least change and impact on our netwrok.
Any pointer or Simple configuration that would greatly appreciated.
Usually making changes to crypto maps means taking the crypto map off the interface first, otherwise you can lock yourself out of the router and stop all traffic going through it. With the change you want to make, you *should* be able to do it without affecting all your other tunnels, but I woiuld recommend two things:
- Make these changes after hours during a scheduled outage time just in case
- Make these changes from the inside network of the 7200, not from the outside where the crypto map is applied.
Let's say the 2600's current IP address is 184.108.40.206, and its new address with the new ISP will be 220.127.116.11. On the 7200 you'll have config commands similar to these:
Then you have to change the access-list on both ends that references the 192.168.40.0 network. This will quite possibly affect your network connectivity, so best to do this from the inside network of both routers during a short outage period.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :