IPsec stuff

From: Leah Lynch (leah_lynch@xxxxxxxxxx)
Date: Thu Apr 05 2001 - 16:41:07 GMT-3


   
I just completed a lab that required the use of ipsec between two routers
for two different types of traffic from two different networks. I was having
some trouble getting the crypto maps to work, I finally figured it out, but
I wanted to let you all know that adding "log" to the end of the access
lists and adding a "deny any any log" to the end of the access list. When I
did this I found that permitting "ip" was denying tcp port 23 and icmp which
did not allow my crypto maps to work for telnet, this only was a problem on
one of the routers.

Leah



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:29:41 GMT-3