Solved

Config Site to Site VPN on Cisco RVS4000 behind Router

Posted on 2011-09-18
5
887 Views
Last Modified: 2012-05-12
Hi experts:

I'm trying to create a site to site VPN from my house to a data center that has a ASA 5505.  The issue is that at home I have to use the ISP's router (Verizon FiOS)  So, my question is...what ports do I have to forward from my ISP's router to my Cisco RVS4000 to properly configure the site to site connection?
0
Comment
Question by:polaris101
  • 2
  • 2
5 Comments
 
LVL 32

Expert Comment

by:harbor235
Comment Utility


I assume you mean you want to terminate teh VPN on the RVS4000 via a site-to-siteVPN?
UDP 500(isakmp), IP 50(ESP) and 51(AH), this should do the trick,

I would enable nat traversal making IPSEC nat aware


harbor235 ;}
0
 
LVL 35

Expert Comment

by:Ernie Beek
Comment Utility
Assuming you use IPSec:

UDP port 500 for IKE
When using IPSec NAT traversal, UDP port 4500

Also you need to forward two protocols (so not ports): protocol 50 (ESP) and protocol 51 (AH).
0
 
LVL 35

Expert Comment

by:Ernie Beek
Comment Utility
Hm, close call ;)
0
 

Accepted Solution

by:
polaris101 earned 0 total points
Comment Utility
Well, I found out in order to use my own router with FiOS I have to put a call in and have them use the ehternet instead of the coax from from the unit they provide.
0
 

Author Closing Comment

by:polaris101
Comment Utility
Put call in to ISP
0

Featured Post

Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

Join & Write a Comment

Overview The Cisco PIX 501, PIX 506e, ASA 5505 and ASA 5510 (most if not all of this information will be relevant to the PIX 515e but I do not have a working configuration handy to verify the validity) are primarily used within small to medium busi…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now