03-18-2016 02:05 AM
Hi
i created a vpn between two routers in two different sites. The VPN is working fine but i noted something that i can ping from peer1 to peer2 though the tunnel although the ACL of the interesting traffic doesn't permit icmp between two peers, it is configured as following:
access-list 120 permit ip 10.10.10.0 255.255.255.0 192.168.2.0 255.255.255.0
access-list 120 permit ip host 1.1.1.1 host 2.2.2.2
no icmp is permitted but icmp traffic is encapsulated, encrypted and passed through the tunnel , why ???
Solved! Go to Solution.
03-18-2016 02:12 AM
Hello moahmed1981,
When you configure access-list for
If you want to change this, please configure the VPN filter to prevent pings across
Here is a doc for your reference:-
https://popravak.wordpress.com/2011/11/07/cisco-ios-vpn-filter/
Regards,
Dinesh Moudgil
P.S. Please rate helpful posts.
03-18-2016 02:12 AM
Hello moahmed1981,
When you configure access-list for
If you want to change this, please configure the VPN filter to prevent pings across
Here is a doc for your reference:-
https://popravak.wordpress.com/2011/11/07/cisco-ios-vpn-filter/
Regards,
Dinesh Moudgil
P.S. Please rate helpful posts.
03-18-2016 02:44 AM
thanks Dinesh for your reply
03-18-2016 02:46 AM
Glat to assist you,moahmed1981
Regards,
Dinesh Moudgil
P.S. Please rate helpful posts.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide