Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

Connecting from a Microsoft ISA server to the 3060 VPN concentrator

Scenario: I would like to set up a IPSec tunnel from a Microsoft ISA server to a Cisco VPN 3060 Concentrator using 3DES/MD5. I would also like to allow them activity to only one server. Currently, I have added a Network list that will tunnel only if it that specific IP address is requested. Has anyone done this before and can someone help me with connecting to an ISA server? Also, does the network list and some ACLs on core routers seem to be the way to do this.



Cisco Employee

Re: Connecting from a Microsoft ISA server to the 3060 VPN conce

Can't really help you with the ISA side of things, check MS's web site for config details. The config on the 3000 will be just a standard LAN-to-LAN tunnel, just make sure your Phase 1 and 2 lifetimes match whatever the ISA server defaults to.

If you only want to have access to one IP address, then yes, just putting that one IP address in the Network List on the 3000 should be enough. Again, just make sure you mirror the Local and Remote Networks (even if it's just one address) onto the ISA server.

CreatePlease to create content