Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Route from 1800 series VPN tunnel to internet through 3640 series

I have a Cisco 1800 series with a VPN Tunnel to my primary network.

I have a   Cisco 3640 Series as main router at primary location, with 6 FastEthernet,   internal network is, interface on cisco FE0/0 to Internet connected to fastethernet on 3640. Other interfaces on 3640...172.x.x.x 192.x.x.x 163.x.x.x   and 169.x.x.x All routing from internal network works well to all interfaces,   and all traffic can access internet. I've added the second router at location  for a vpn connection and tunnel works well, (see config below-addresses, pw, and psk changed for privacy) computer on far side of tunnel   10.0.20.x and can access all devices on this side network and FE0/0 on 1800 is , however no   tunnel traffic can get to internet through the 3640 as there is no route   to get to 10.0.20.x traffic to if looking for internet address. I   tested a specific address and added a route for it to the 1800 and it works   to get to internet, I can't add all ip addresses for routes for internet and   there has to be an easy way to resolve this by sending any 10.0.20.x traffic   looking for internet address to interface FastEthernet0/0 on 1800 ip address is   directly connected to switch on network...(inside)

here is the 1800 cfg

SCSOBCO#sh run
Building configuration...

Current configuration : 1832 bytes
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
hostname SCSOBCO
enable secret
enable password
no aaa new-model
resource policy
ip cef
crypto isakmp policy 1
encr 3des
hash md5
authentication pre-share
group 2
crypto isakmp key ******** address
crypto ipsec transform-set BCO-TSET esp-3des esp-md5-hmac
mode transport
crypto map BCO-MAP 10 ipsec-isakmp
set peer
set transform-set BCO-TSET
match address 172
interface Tunnel0
ip address
tunnel source
tunnel destination
interface FastEthernet0/0
ip address
ip nat inside
ip virtual-reassembly
speed auto
no mop enabled
interface FastEthernet0/1
no ip address
duplex auto
speed auto
interface Serial0/0/0
ip address
ip nat outside
ip virtual-reassembly
encapsulation ppp
no fair-queue
crypto map BCO-MAP
router bgp 65505
no synchronization
bgp router-id
bgp log-neighbor-changes
neighbor remote-as 22394
neighbor default-originate
neighbor soft-reconfiguration inbound
no auto-summary
ip route
ip http server
no ip http secure-server
no logging trap
access-list 100 permit ip any any
access-list 172 permit gre host host
line con 0
line aux 0
line vty 0 4
scheduler allocate 20000 1000



Everyone's tags (1)

Re: Route from 1800 series VPN tunnel to internet through 3640 s

Are you using at both locations for their perspective LANs? 


CreatePlease login to create content