cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
334
Views
0
Helpful
2
Replies

Apply blocl in VPN L2L IPsec

Alex Ribas
Level 1
Level 1

Hi all

Hi have on IPsec tunnel with customer.

My Network 10.29.0.0/16

Customer 10.16.0.0/16

access-list 112 line 1 extended permit ip 10.29.0.0 255.255.0.0 10.16.0.0 255.255.0.0
 
The ACL 112  I user to crypto in Tunnel.
 
VPN it's working bidireccional.
But I need block the customer access my Network like TCP ping etc.
Example.
NET: 10.16.0.0 255.255.0.0  cannot PING or TCP in port 22 etc.

How can I do this?
Any clue?
Thank you
Alex
 
2 Replies 2

@Alex Ribas what device is this, a router or ASA?

If router, apply an interface ACL, explictly deny the traffic you want to deny then permit the rest.

If ASA, you can apply a VPN filter to the specific VPN tunnel.