Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi allI need to setup nat to allow external devices to access a server on an internal network. The plan is to use static port nat. Time for testing on the live system is limited so I'm trying to plan the basics. The problem is there is a firewall ...
Hi thereI'm struggling to configure an ASA firewall - vers 8.31Dmz contains a group of servers. A new application has been put onto one of the servers and assigned a port number, it is to be accessible from the internet.I have been asked to open a p...
Hey BuddyThe AS_PATH for both is only 1, don't get confused by (AS_SET) which only counts as 1 no matter how many AS are in the set. Refer to section "How the Best Path Algorithm Works"4.Prefer the path with the shortest AS_PATH.Note: Be aware of th...
Hi DI guess you are using eigrp to advertise the T&D network, and the Tunnel interface IP rangeIs it possible that you are also including the ip range of the tunnel destination in the same eigrp instance?
Hi DYou can reuse the transform set but I believe its best practice to use separate ones.Just to get things straight - what is the output from: show crypto ipsec saIs the tunnel up?Also I'm a little confused are you connecting 2 separate vpn tunnels ...
Sorry also to add the transform set name is only locally important - so you can both use whatever name you want. Important to make sure you reference it correctly in your own config:crypto ipsec transform-set mytset esp-3des esp-md5-hmaccrypto ipsec...