What do the acl when configuring a router as gateway VPN?

Hi all

my predecessor has set up our VPN gateway on our secondary router. Here's the relevant part of the config.

ISAKMP crypto group customer VPN-CLIENT-HOST configuration

key XXXX-XXXX

192.168.177.7 DNS 192.168.100.1

win 192.168.177.7

XXXX.local field

pool SDM_POOL_1

ACL 104

Im still trying to catch up in a few areas of programming and Im not sure this that set the ACL in this command is for or how it will affect users who connect to the gateway.

Can someone point me in the direction of a useful Cisco document or explain it please? Ive been everywhere on Cisco's Web site and keep it going round in circles (its as if Cisco wants to sell me something; his tent like out of a Vegas casino without having spent the slots)

Thanks in advance.

Paul

Hello Paul,

Parminder response is correct, this ACL is used to match the interesting traffic (which will be sent via encrypted VPN tunnel).

You will need to classify the traffic originating from your end because it's the traffic that will be encrypted, in your ACL it (coming from the other site or customers) it is already encrypted and you'll decripted as soon as he arrive at your end.

I hope this has been informative.

Kind regards

Julio

Tags: Cisco Security

Similar Questions

  • What is the probllem when Windows XP will not update. Receive an update failure message.

    What is the dif when Windows XP will not update. Window security KB2619340, KB2656353, KB2585146, KB2631893 and KB2585542 could not be updated. How can I fix the problem.

    What is the dif when Windows XP will not update. Window security KB2619340, KB2656353, KB2585146, KB2631893 and KB2585542 could not be updated. How can I fix the problem.

    Could be one or more of a number of things. Malware is a. You are able to install other updates. What is your current antivirus software? Have you tried to install the updates with the disabled anti-virus?

    Run the automatic fix when you visit the link HERE. Try the updates again.

  • How can I change the default actions of what made the PC when I connect a camera, USB key, etc.?

    How can I change the default actions of what made the PC when I connect a camera, USB key, etc.. My Samsung intensity II is what I need it for; I want to shoot to the top of this window asking me what to do when I plug in, but one day, I was not thought and press on 'No Action' with the "always perform this action for this device" (or said something like that) checkbox checked.

    Once it is connected, go to my computer, and your camera photo or anything else that should be there.  If is isn't, it is a completely different issue.  It's done, right-click on it and select Properties.  Click the AutoPlay tab.  There is a version of dialogue enough of this "window asking me what to do."  You can figure out what to do from there.

  • What is the meaning when it shows the HTTP errors

    What is the meaning when it shows the HTTP errors on my web page. Thks

    There are so many different HTTP errors as described in the following page that it is difficult to answer your question without the specific errors that you receive as well as other important information. Many HTTP errors indicate a problem on the server you are trying to connect to and you have no control over them, or a problem on your system. again, this depends on the specific error.

    List of HTTP status codes
     http://en.Wikipedia.org/wiki/List_of_HTTP_status_codes

    You can also consult the article below in order to provide enough information if you receive a better response and possible solution. It is useful to know the exact version of Windows Vista (including 32-bit or 64-bit) and service pack level, the brand and model of your computer, that's what you try to do the legwork, which program (browser and version) you are using and the results you receive, including any message (error) you can receive Word for Word.

    How to ask a question
     http://support.Microsoft.com/kb/555375

    Kind regards

  • What is the event when back to summon the Manager

    Hi, I use Invoke Manager to play the video

    What is the event when the invoke handler is close / back-> for my application.

    (I want to analyze how long this user read this video)

    Thank you

    I do not know what past all I KNOW the app called is not informed of which invokes this past that stage of the initial call, therefore no mechanism is a reminder when the application is closed.

    Obviously if you wrote the video player yourself you could invoke back or set up signs saying closed process.

  • HP Probook 450 G1: What is the compatible RAM configuration for my laptop?

    Product number: F6B14PA ##ACJ

    Serial number: (deleted content)

    I'm from the India. I need to upgrade the RAM for my laptop. I'm looking for 4 GB of RAM of 4 GB existing upgradation. I need while seeking in the online market. What is the configuration of my laptop RAM. I need help for that matter. Please help me.

    Another issue is that there will be no problem if there are different volts at the two RAMS cards in slots

    If you associate brands and densities (single and double face) then you run in a greater chance of the laptop won't start.

    That is why it is deemed be advised to always identical (in all respects) modules when you upgrade memory in a laptop ofr desktop PC.

  • What is the indication when the bridge lights

    What it means in the Councils, when the bridge awakens in playing solitaire.

    Hello

    Read this:

    http://www.Microsoft.com/resources/documentation/Windows/XP/all/proddocs/en-us/sol_play.mspx?mfr=true

  • What is the process when the code signing a project

    Hello

    In fact, what is happening in the background when I code sign a project? Y at - it online documentation that explains this?

    Thank you and my apologies if this has been asked before.

    I don't know the exact process, but I guess the BB has the public key of the signature server and can check its signature.
    only the signature server has the private key and can create a signature.

  • What is the root when you convert AS3.0 Create js?

    Hi all

    Does anyone know what MovieClip (root) .play (); When converting to create JS for Html5 Canvas is?

    Thank you very much.

    You must enclose your variable to the main timeline:

    this.animVar = 1;

    You can then use, exportRoot.animVar or this.parent.animVar on the main timeline

  • What is the recommended computer configuration - PC - first pro

    I'm shopping for a new computer. What is the recommended configuration for a PC that is running the first Pro CS6

    Please see the link: http://helpx.adobe.com/x-productkb/policy-pricing/system-requirements-premiere-pro.html#Ad obe Premiere Pro CS6 system requirements

  • What is the difference when the IP pool is placed under the group policy and SSL tunnel-group

    Hi usually ip address pool is placed under the group policy in Anyconnect VPN, but I noticed the ip address pool is also placed under the Anyconnect VPN tunnel-group in some ASA. What is the difference between both of them? Thank you

    Both are used for the same purpose, but that under group policy always takes preference.

    Kind regards

    Sandra

    If you find the answer useful, please mark it as correct while others can benefit from the discussion.

  • Help. What is the best drive configured

    Hi, I've searched for days understand this disc is suitable for every task.

    I own an iMac 2011 with 12 GB of RAM and a 500 GB hard drive (7200 RPM) and two external hard drives. One of them is HDD 1 TB USB3 interface but my iMac does not support USB3 so there the USB2 speed. The other is a 500 GB HARD disk with Firewire interface.

    I want to color correct a short, my images are Apple Prores HQ with around 320 MB/s data rate and the total size is 45 GB. I found this by using the Aja Datacalc application. My system is slow for this work, so I will try to find a way to get there.

    From what I found on the internet, an SSD would make a difference. But I don't know if it would be better to buy an external SSD with thunderbolt interface or add internal SSD, but also keep the original of my iMac hard drive.

    But more importantly, I know not how to use these discs. And I mean the basic level.

    For example, I must:

    -Add internal SSD flash drive and use it as a boot drive, so it will work all programs, I guess that

    -use the internal HARD drive to keep the media and project files

    -use the FireWire External HARD to cache disk

    - and the drive external HARD with USB2 for exports

    ???

    Also, what is the minimum size for the SSD in this case? I guess that's 256 GB, but maybe it needs more space, I don't know.

    Anyone?

    If stick you with some of the lumetri no color fx, your gpu can handle a bit of color correction. lumetri is of speedgrade and powerful GPU. you say the system after a certain time LAG, if it's back on the same project you've worked on you can check the memory usage to see if the 12 GB of ram is used. If it works fine with a new project with these images and then lag after adding the color fx, it could be the gpu it slows down with the color fx. There are so-called utilities that you can use on the mac to check the cpu, ram and same gpu use to help identify bottlenecks...

    for the media, previews and exports, readers are to be fast enough for their goal with the codecs used. If you have a fast media player but are constantly rendering to a slow player previews, it may be counterproductive. If the drive is slow and the reader to glimpse is fast, but you return not found very often it can also be counterproductive. its better to have an SSD for many small files, like os/apps/cache files, as hard drives do not handle well lots of small files.

  • What is the impact when extracted added for some reason and restarted?

    I would like to know if somehow during migration, so extract added to the night and in the morning I rebooted, what is the impact?

    Is that what it means these changes at night will not captured? or extract restarted automatically capture any fleeting change?

    Thanks in advance.

    Depends on your policy of retention/size of destination for archiving logs

  • IPhone does not connect to the WIFI in the House when not near router

    This is a recent as problem it used to work fine.

    My iphone connects to the WIFI in my house when I'm in the same room as the router but won't connect to nowhere elsewhere in the House.

    Any other apple device I have works fine, so this would suggest that there is a problem with the phone?

    Is it possible to fix this?

    Thank you

    If your iPhone is in a case, first thing I would try is to remove the case and see if that fixes it.  Other that that, I can't imagine any easy fixes.  This article may help:

    Import photos and videos from your iPhone, iPad or iPod touch - Apple Support

    My next step would be to take it to a nearby Apple store and see if they can diagnose and help you.

  • What is the replacement for "configure Reference Levels.vi niScope.

    I just put my driver OR-Scope of 3.4 to 3.6 and now the VI, "set up reference Levels.vi niScope" is missing in the instr.lib\niScope\Configure\ directory. I found an old version under niScopeObsolete.llb but this version uses DLL calls where the 3.4 version used nodes of property. What became of this VI and where can I find a covering memo telling me that this feature has been removed?

    Thank you

    Charles

    Hi Charles,

    I looked back through the files on the disk and the oldest version I found this VI was about seven (can't find the files before this date) years ago. It was located under the folder \Measurements\Obsolete even at this time, and it seems to be the same VI (he calls in the DLL). The following year he then changed locations to the niScopeObsolete.llb directory. I was unable to find a version that contained simply property nodes, but you are right that the features are essentially the same. Actually, this is the most likely reason that it is not a top-level function that exists in one of pallets of NOR-SCOPE function, since it is only used in some measures specific and exact functionality can be achieved through the use of knots of property.

    You are able to make use of the current version you found in niScopeObsolete.llb or maybe just nodes of property without any problems? I'm interested in knowing what else was different with the 'new' version that you had with the nodes property. Is that what the icon and/or documents of the VI is different? Do you still have this VI you can join? I want to assure you that this change did not affect your application beyond the confusion to have the situation has changed.

    Kind regards

Maybe you are looking for