Hi all In the Yusuf's CCIE practice lab 1 - 3.2 Lan to Lan IPSec between ASA and R5, the ASA doesn't have the following in the solution that is provided:
sysopt connection permit-vpn nat (inside) 0 access-list 101 for not translating IPSec traffic Without these both commands, IPSec traffic will not pass end to end, right? Any thoughts? With regards Kings
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
