What are the issues with this design ?????? The PIX should be able to routeGRE traffic throuhg tunnls established in your site2site topology.Sunil WadwaniCisco TME
NAT transparency is not supported on the PIX (unlike on the Cisco 3000).There is no transparency of ESP and IKE protocols through the PIX.Seems like you need a static defined and an access list entry permittingtraffic through UDP port 500.The use of ...
Try and have your SP do these. sh interfaces tunnel (number of tunnel that the "tunnel mode gre ip" is configured)check to see if the tunnel is not shutdown.check to see if tunnel protocol gre/ip is upHave them (your SP) try and ping the GRE tunnel ...
I guess you could use AH only (and not ESP transforms ) within IPSEC. You could even use esp-null as an option when defining your crypto transform sets.Need to look atthe VPN configuration manual that you should have.Otherwise contact your A.M if you...