Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Default gateway and Tunnel default gateway for 3000 concentrator??

Hi, I have a customer that has 2 separate connections to the internet. The first connection is the primary connection and has a firewall. The second connection has only a router. The customer wants to place a 3015 concentrator on the second connection for inbound VPN access from remote clients only. All internet bound traffic will be sent out via the first connection.

My questions are:

1. What should be the default gateway for the 3015?

2. What is the Tunnel default gateway for the 3015? There will be remote access clients using 192.168.X.X space, no LAN-to-LAN.

3. What additional static routes do we need to add to the 3015 so that all remote clients can access internal resources and access the internet via the first connection?

Thank You very much for any assistance!

  • Other Security Subjects
2 REPLIES
New Member

Re: Default gateway and Tunnel default gateway for 3000 concentr

1. Defalut gateway next hop on public side. eg your router.

2.Tunnel default gateway next hop on your private side or private interface.

No static routes are neccessary for tunneled traffic.

Static routes only for not tunneled traffic like administration, authenticateion server and alike.

You need to tunnel everything to include all addresses on the Internet.

New Member

Re: Default gateway and Tunnel default gateway for 3000 concentr

Thanks for the help, Ulrik!

112
Views
0
Helpful
2
Replies
This widget could not be displayed.