Solved

Router on a stick with dhcp and vpn tunnel throwing in  a static route with access rules

Posted on 2014-01-30
1
545 Views
Last Modified: 2014-02-06
Please can someone give me some direction.....

I have to use a cisco 2901 to become a ROAS

3 subnets --

data- computer-tablets  192.168.10.x        ---  has windows server for dhcp of this subnet  
(new native clan for data)

voice - sip phones     192.168.20.x      ----   cisco router has to be dhcp server for these
cctv  -- cameras       192.168.30.x       ---- static ip as only 1 terminal


how do i configure the router so include a ipsec tunnel to their desktop hosting data centre and also route traffic for that purpose down the ipsec tunnel.

local breakout for internet though.


also unsure of placement of access rules for specific ports for voice RTP, etc to go to  voice clan
and also the cctv udp ports ?

i am very grateful for any help.

Thank you
0
Comment
Question by:Maphew
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 28

Accepted Solution

by:
asavener earned 500 total points
ID: 39821239
Hmm....

It's been a while, but I think there are some special commands to get QoS working on subinterfaces.

See this article:  http://www.cisco.com/en/US/tech/tk543/tk545/technologies_tech_note09186a0080114326.shtml

Also, due to the need for the traffic to traverse the wire twice (once in each direction), router on a stick can cause performance degradation.

Bottom line, validate that the configuration meets your requirements.
0

Featured Post

Free NetCrunch network monitor licenses!

Only on Experts-Exchange: Sign-up for a free-trial and we'll send you your permanent license!

Here is what you get: 30 Nodes | Unlimited Sensors | No Time Restrictions | Absolutely FREE!

Act now. This offer ends July 14, 2017.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Envision that you are chipping away at another e-business site with a team of pundit developers and designers. Everything seems, by all accounts, to be going easily.
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
Viewers will learn how to properly install and use Secure Shell (SSH) to work on projects or homework remotely. Download Secure Shell: Follow basic installation instructions: Open Secure Shell and use "Quick Connect" to enter credentials includi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question