04-26-2010 03:17 AM - edited 02-21-2020 04:37 PM
Hi, I'm setting up a VPN to another company, and they've provided one routable IP address to be both their peer and their local internal system that we need access to. Can I use the remote peer address in the crypto ACL? I think they need to provide a second NAT IP for their internal system, otherwise the IPSec traffic from us destined for their peer will hit the crypto ACL. What do you think? Thanks!
Solved! Go to Solution.
04-26-2010 04:39 AM
As long as only 1 end of the peer uses the IPSec peer (terminating ip address) in the crypto ACL, that is OK. You can't have both ends as being the crypto ACL.
04-26-2010 04:39 AM
As long as only 1 end of the peer uses the IPSec peer (terminating ip address) in the crypto ACL, that is OK. You can't have both ends as being the crypto ACL.
04-29-2010 05:21 AM
Thanks, that's what I expected.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide