cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
310
Views
0
Helpful
1
Replies

PIX to IOS Site to site issue

gautamzone
Level 1
Level 1

Hi friends,

A strange VPN issue with PIX 7.0 though not critical.

There is a site to site VPN tunnel between PIX and a Cisco IOS router. The tunnel should come up upon initiating traffic to a host on port 22.

When we telnet on port 22 to the host defined in interesting traffic, the tunnel DOES NOT come up. But if we ssh to it, it comes up.

Is there a solution to this? Or as a workaround, should we setup our interesting traffic to only include hosts and omit ports?

Thanks a lot

Gautam

1 Reply 1

srue
Level 7
Level 7

crypto map acl's should typically just contain hosts and not ports. use standard interface acl's to control what ports they can communicate on.

Review Cisco Networking for a $25 gift card