07-16-2007 03:09 PM - edited 02-21-2020 01:36 AM
I have an ASA connected to the Internet running PAT. A CME (3745) is sitting behind the ASA. I wish to create a GRE tunnel between the 3745 and a 2600 on the Internet.
Is it possible to pass GRE traffic through an ASA/PAT?
Thanks!
Tom
07-16-2007 08:02 PM
Yes,
You can permit gre traffic through the router if not already permitted and set up the tunnels on the routers. Does the remote rouer support VPN, or is it sitting behind a device that does? You should configure a l2l tunnel between the devices to encrypt the gre traffic as you don't want the TCP traffic between the sites to be captured and reassembled.
07-17-2007 02:36 PM
Thanks for the reply. I am trying to build a GRE tunnel between two routers with an ASA in the middle. But, because the ASA is running PAT, I'm not sure how to permit GRE through the ASA. As you probably know, GRE doesn't have any TCP/UDP port numbers.
The remote router doesn't support VPN and is not required in our scenario.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide