Link to home
Start Free TrialLog in
Avatar of matedwards
matedwardsFlag for United Kingdom of Great Britain and Northern Ireland

asked on

Cisco site to site VPN


I need to set up a site-to-site vpn between two Cisco 877 ADSL modem/routers.
As is very common with Cisco the GUI utilities (SDM, SDM express) don't work.. both boxes will have a static xxxx.xxxx.xxxx.xxxx WAN IP address and with 10.10.0.xxxx/24 and 192.168.4.xxxx/24 LAN subnets at either end.

Can anyone help with the commands to do it in the CLI or even a text file with an example in..?

Any help would be greatly appreciated..?

Thanks  
ASKER CERTIFIED SOLUTION
Avatar of cosmicfox
cosmicfox
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of matedwards

ASKER


thanks cosmicfox..

What would be the advantage of a GRE tunnel with protection on..?

gre allows you to put routing protocol traffic over the vpn, along with other advantages. here is a link to it, if your router supports it. http://www.cisco.com/en/US/technologies/tk583/tk372/technologies_white_paper0900aecd8029d629.html


Thanks agaoin cosmicfox.. we have reset the Cisco 877 to factory defaults and now cannot access either box.. Cisco have insisted we take out a service contract, costing £1000s, to send us the firmware the units came with..??!!
 We are inches away from binning them both and buying a couple of Netgear.. I may have to abandon this question.. apologies again.. will post shorty..
how did you reset it? if you erased the startup config only then you don't need the firmware. Cisco will want a contract in order to help you. Can you get into the device via the console port? it's fine if you decide to switch there is a slight learning curve for cisco.

Thanks cosmic.. we managed to get some firmware off of our Cisco reseller.. we imported your text using the CLI and saved it to the startup config..  it then appeared in the Cisco SDM and we could see the entries.. the subnets can't ping each other at either end but the tunnel is up and that is another question.

thanks again..