Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Re-Routing Traffic for IPSec VPN Passthrough

Hello all,

I'm in the process of creating a new VPN IPSec passthrough for a vendor that needs a 2nd one built out for redundancy.  We're upgrading our Internet links but our Web filter is rated 10x lower than the speed at which our Internet bandwidth is being upgraded to.  I was asked if we can re-route all traffic from this vendor around our Web filter.  Here is the configurations for the current VPN passthrough as well as the new one being built out.

Config:

object network REMOTE-RTR

  host 1.1.1.1

object network INT-RTR

  host 10.10.10.10

  nat (ROUTER-DMZ,outside) static 192.0.2.10

 

access-list OUTSIDE-ACCESS-IN extended permit udp object REMOTE-RTR object INT-RTR eq 500

access-list OUTSIDE-ACCESS-IN extended permit udp object REMOTE-RTR object INT-RTR eq 4500

 

access-list REMOTE-DMZ-ACCESS-IN extended permit udp object INT-RTR object REMOTE-RTR eq 500

access-list REMOTE-DMZ-ACCESS-IN extended permit udp object INT-RTR object REMOTE-RTR eq 4500

 

Thanks!

Terence

29
Views
0
Helpful
0
Replies
CreatePlease login to create content