Hi Rik,

You can include  a access-list on your router to permit esp,ahp and UDP
port 500 for isakmp
Ur access-list should like one given below,

access-list acl-name permit esp src_ip dest_ip
access-list acl-name permit ahp src_ip dest_ip
access-list acl-name permit udp src_ip dest_ip eq isakmp

Kind Regards /Thangavel
----------------------------------------------------------------------
CCIE (qual),CCS,CCDP,CCNP,MCSE
------------------------------------------------------------------------
186K
Reading,Brkshire
Direct No   -0118 9064259
Mobile No  -07796292416
Post code: RG16LH
www.186k.co.uk

----------------------------------------------------------------------
The greatest glory in living lies not in never falling,
     but in rising every time we fall ."
 -- Nelson Mandela

--------------------------------------------------------------------


                                                                                       
                            
                    "Ricky
Chan"
                                      
cc:
                    Sent by:             Fax
to:
                    nobody@groups        Subject:     IPSEC question
scenario [7:40025]
                   
tudy.com
                                                                                       
                            
                                                                                       
                            
                   
01/04/2002
                   
14:01
                   
Please
                    respond
to
                    "Ricky
Chan"
                                                                                       
                            
                                                                                       
                            




Hi all,

I have another scenario question and would like to hear from your expertise
opinion.

machine A  10.10.10.1/24
machine B  10.10.10.2/24
machine c  10.10.100.1/24

I configured IPSEC for all these machines. Machine A can talk to Machine B,
but Neither A and B can talk to Machine C. Obviously, Machine C belongs to
diff network. If I put a router in between. I need to configure IPSEC in
the
router in order to let them talk to each other. Do you know how to complish
this? Thanks alot.

Ricky
**********************************************************************
This e-mail is from 186k Ltd and is intended only for the 
addressee named above. As this e-mail may contain confidential
or priveleged information, if you are not the named addressee or
the person responsible for delivering the message to the named 
addressee, please advise the sender by return e-mail. The
contents should not be disclosed to any other person nor copies
taken.
186k Ltd is a Lattice Group company, registered in England 
& Wales No. 3751494 Registered Office 130 Jermyn Street 
London SW1Y 4UR
**********************************************************************




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=40027&t=40025
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to