02-03-2021 02:22 AM - edited 02-03-2021 03:02 AM
I Configure site2site vpn with other remote network ..We decided to my server network translate other new ip address . i created nat for source and translations, VPN is up I can telnet remote server but remote network can not telnet my Server and port number I add ACL but problem does not solve please help
MyLan network
192.168.4.0
Nat subnet1
192.168.1.1
Nat subnet2
192.168.1.2
remote lan network
192.168.2.0 255.255.255.0
192.168.3.0 255.255.255.0
crypto map Internet_map 8 match address VPN
crypto map Internet_map 8 set pfs group5
crypto map Internet_map 8 set peer 1.1.1.1
crypto map Internet_map 8 set ikev1 transform-set VPNset
crypto map Internet_map 8 set security-association lifetime seconds 3600
VPN
access-list VPN line 1 extended permit ip host 192.168.1.1 192.168.2.0 255.255.255.0
access-list VPN line 1 extended permit ip host 192.168.1.1 192.168.2.0 255.255.255.0
access-list Internet_access_in line 14 extended permit tcp 192.168.2.0 255.255.255.0192.168.4.0
255.255.255.0 eq 101
access-list Internet_access_in line 14 extended permit tcp 192.168.3.0 255.255.255.0 192.168.4.0
255.255.255.0 eq 101
access-list Internet_access_in line 14 extended permit udp 192.168.2.0 255.255.255.0 192.168.4.0
255.255.255.0 eq 101
access-list Internet_access_in line 14 extended permit udp 192.168.3.0 255.255.255.0 92.168.4.0
255.255.255.0 eq 101
access-list Internet_access_in line 14 extended permit tcp 192.168.2.0 255.255.255 0 192.168.4.0 255.255.255.0 eq telnet
access-list Internet_access_in line 14 extended permit tcp 192.168.3.0 255.255.255.0 192.168.4.0 255.255.255.0 eq telnet
02-03-2021 02:49 AM
02-03-2021 03:04 AM
Sorry this is my mistake acl name is VPN. I changed my mistake in text
Acl is match bt dont connect my server and port
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide