Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

VPN Client (inside to outside)

Hi;

I need to configure My pix so one of my clients can extablish a VPN tunnel the outside?

outside --- PIX -- Client (VPN Client)

what access lis needed to be configued on the PIX?

help please.

3 REPLIES
Silver

Re: VPN Client (inside to outside)

Try this:

In order to be able to establish a VPN tunnel you need to make sure that UDP and ESP is open.

You need to open...

UDP on port 500

UDP on port 4500

ESP (no ports).

Using access-lists:

access-list 101 permit udp any any port 500

access-list 101 permit udp any any port 4500

access-list 101 permit esp any any

also make sure that you have command: fixup protocol esp-ike

New Member

Re: VPN Client (inside to outside)

fixup protocol esp-ike is not an option in version 7 code. Is ipsec-pass-through the same?

New Member

Re: VPN Client (inside to outside)

Thanks.

This is what i need.

Thank you.

115
Views
4
Helpful
3
Replies