Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN Config

Status
Not open for further replies.
Oct 30, 2012
4
US
Can anyone one tell me if I have the ACL on one side of a tunnel to have the interesting traffic as permit ip 10.0.0.0 0.255.255.255 10.1.81.0 0.0.0.255 and on the other side they have that same ACL reversed of course but also have other statements being that the ACL was used to declare more interesting traffic previously.

Any way. My question is will those extra statements cause problems for this IPsec Tunnel.
Thank you for any help.
 
Each one of those ACE's will be used to create an IPSec SA. Since you have at least one ACE that is the mirror opposite of the other side then traffic that matches that ACE will be deemed interesting. The other statements should be removed to clean things up and to reduce extra processing on the IPSec endpoint.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top