cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
764
Views
0
Helpful
5
Replies

VPN Enabled which interface?

CSCO10663272
Level 1
Level 1

Hi,

Can someone give me some information on setting up a vpn

via PDM ver3.0

The PDM gives you the option to select the interface on

which you want it enabled ie Inside/outside.

Whats the difference between to 2.

Does setting up on the inside give you unrestricted

access to the inside and does it automatically make it

NAT excempt

If you set up on the outside interface then do you use

access-lists to restrict access.

5 Replies 5

benny.jr
Level 1
Level 1

are you doing vpn site-to-site or remote access?

Site to Site

Hey,

Try this command line config for site to site VPN

jackko
Level 7
Level 7

regardless the type of vpn, it "always" applies on the outsite interface. the reason being the outside internet is the one connected to the internet, as well as the remote user or peer connected to.

alternatively, if there is a dmz interface that connected to wlan. then in order to configure remote vpn access for the wlan user, the crypto map should apply on the dmz interface.

Ok,

So when you start VPN wizard on the PDM,you select the type of VPN in this case site to site, you then have a option to select inside/outside.

Whats the difference between too.

If you select inside does this give hosts on the remote network full access to you internal network?

If you select outside, then do you need to create access list from the lower security interface outside to inside to allow access to you internal network?

Many thanks for all the replies