cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
647
Views
0
Helpful
3
Replies

ipsec with loopback

beumer
Level 1
Level 1

Good day guys,

I've got a problem.

i have to set up a ipsec tunnel with a partner, but the partner wil not use our local subnet, instead he give us the ip address 1.1.1.1 /32

I can use the loopback interface, but

i can't do the command "crypto map local address" because we have several tunnels (gre tunnel's and normal ipsec tunnels)

who use the fa interface.

We doing it on a 2800 router with no nat.

Maybe u guys wanna look at the config about doing nat overload on the loopback.

i don't know if its works.

tnx in advance

3 Replies 3

wong34539
Level 6
Level 6

GRE inside IPSec with endpoints defined as the interface loopbacks does not appear to work

Hi

Can you try this command on your routers ?

crypto map mapname local-address loopbackx

http://www.cisco.com/univercd/cc/td/doc/product/software/ios124/124tcr/tsec_r/sec_c3ht.htm#wp1274324

regds

This command is not an option because there are also gre-ipsec tunnels.

i finally get the solution.

What i did was turned on ip nat on interfaces

and Nat't my local subnet to the partner subnet doing overload on the loopback interface.

Thnx guys for thinking with me for the solution.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: