cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
371
Views
0
Helpful
2
Replies

Pass Unencrypted traffic through Concentrator

oabduo983
Level 1
Level 1

Hi Guys,

I have a site to site connection between two concentrators, but the remote branch is taking its internet connection from the Head office Internet. We want it to go to the internet through its own DSL through the concentrator. the gateway of the users is the concentrator and we need to permit traffic to go without encryption thru the concentrator at the remote branch unless it goes to the internal servers at the Head office...

Regards,

2 Replies 2

fmeetz
Level 4
Level 4

The VPN 3000 Concentrator required that the third Aggressive mode packet be encrypted. In versions prior to 3.6.Rel, this was not required. The VPN 3000 Concentrator now accepts the third Aggressive mode packet, either encrypted or unencrypted.

kaachary
Cisco Employee
Cisco Employee

Hi,

You have configure Interface NAt rule for that. So that all the traffic meant for Internet would do out being patted to the Conc Public Intf ip address.

To configure a NAT rule :

http://www.cisco.com/univercd/cc/td/doc/product/vpn/vpn3000/4_7/config/polmgt.htm#wp1321478

Since, the vpn traffic is automatically exempted from NAt, so it would be effective only for unencrypted traffic.

HTH,

-Kanishka

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card