cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
957
Views
5
Helpful
2
Replies

Can ASA IPSEC tunnel be terminated on DMZ interface, if peered to outside int

mmertens
Beginner
Beginner

If I have an outside company whose IPSEC tunnel is peered to the ASA outside interface, can I place the "crypto map interface" command on a DMZ interface and have the ASA successfully peer to the outside interface and provide connectivity to the DMZ interface? In essence will this work, or do I need the "crypto map interface" command on the same interface/IP address as where the remote side is peered to?

THANKS!

2 Replies 2

Yudong Wu
Rising star
Rising star

Yes, you need the "crypto map interface" command on the same interface/IP address as where the remote side is peered to.

Thanks Kevin.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers