cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1026
Views
5
Helpful
2
Replies

Can ASA IPSEC tunnel be terminated on DMZ interface, if peered to outside int

mmertens
Level 1
Level 1

If I have an outside company whose IPSEC tunnel is peered to the ASA outside interface, can I place the "crypto map interface" command on a DMZ interface and have the ASA successfully peer to the outside interface and provide connectivity to the DMZ interface? In essence will this work, or do I need the "crypto map interface" command on the same interface/IP address as where the remote side is peered to?

THANKS!

2 Replies 2

Yudong Wu
Level 7
Level 7

Yes, you need the "crypto map interface" command on the same interface/IP address as where the remote side is peered to.

Thanks Kevin.