cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
668
Views
0
Helpful
7
Replies

How to give access a complete subnet

Amardeep Kumar
Level 1
Level 1

     HI

I want to give access to remote subnet on firewall 5505. Can you please help me how to do it...

Remote subnet is 16x.15X.56.0

Here is my access list

access-list outside_5_cryptomap extended permit ip 192.168.12.0 255.255.254.0 16x.15X.56.0 255.255.254.0

Thanks

Amardeep K

7 Replies 7

you need to provide more details. This is VPN traffic? Your ACL seems fine but should should also look at the ACL for NAT.

yes , this is vpn traffic, remote user is gettign ipsec traffic on his end but nothing is happening on my end..

Thanks

Amardeep K

did you created the ACL for NAT Exempt? It should be a similar line as the one for interesting traffic.

HI

Here is that acl you are talking about .

access-list 101 extended permit ip 192.168.12.0 255.255.254.0 16x.15x.56.0 255.255.254.0

Thanks

Amardeep Rana

is that ACL applied to a NAT (inside) 0 ?

Can you add the config? Based on the two lines your VPN should work. Your VPN works for other subnets?

HI

Here is that

global (outside) 1 interface
nat (inside) 0 access-list 101

Thanks

Amardeep K

with the information provided it should work. The other end should have a mirror of your ACLs

Review Cisco Networking for a $25 gift card