Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,1. NAT happens before crypto2. Static NAT takes precendence over generic NATSee the document athttp://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080094634.shtmlTry this config. I have not tested it.access-list 11...
You can use access-list with 'established' keyword.Alternatively, you can look into reflexive access-list.http://www.firstdigest.com/2009/03/cisco-how-to-use-reflexive-access-list-and-why-they-are-useful/