Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX IPSEC VPN: how to filter traffic

Status
Not open for further replies.

sghezzi

Technical User
Apr 7, 2003
56
DE
Hello,

I have set up an IPSEC VPN between two PIX and it works. Now I would like to filter the destination addresses where the remote host can access to andalso what kind of traffic.

Is it possible?
How?

Thanks a lot

Silvia
 
HI.

It can be done by:

1) Testing connectivity before any changes.
2) Adding relevant statements to the (existing) access-list bound to the outside interface of the destination pix.
3) no sysopt connection permit-ipsec
4) Testing connectivity again.

Use syslog messages of the pix to monitor for any problems and misconfiguration.

Bye


Yizhar Hurwitz
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top