cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
263
Views
0
Helpful
1
Replies

IPSEC b/w ASA and Router --- with nat stuff

I need help regarding the following issue..

An asa is connected to a router which is connected to the internet.

A vpn must be established b/w ASA and a router that is over internet . The ASA is not directly connected to the internet. It is connected to a router which nat the Asa outside ip to a static global IP .

All i need to know is that do need any special configs for this . or its the same as if ASA would have been directly connected to the internet

1 Reply 1

smalkeric
Level 6
Level 6

In order to configure a LAN-to-LAN tunnel between a Cisco IOS? router and an Adaptive Security Appliance (ASA), these configurations are required on the ASA:

Configure the crypto ipsec command in Phase 2.

Configure the isakmp policy command.

Configure the nat 0 command and the access-list command in order to bypass NATting.

Configure the crypto-map command.

Configure the tunnel-group DefaultL2LGroup command with group information

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card