Post by nmoronit » Thu, 07 Oct 2004 01:08:44

I have a static IP address on a ADSL line from Verizon at location A.
I had to configure my Cisco 827 router for bridging on the ATM
interface and configure the IP address on the BVI Interface. It is
working fine. Now I want to create an ipsec tunnel with another 827
at location B. The tunnel is established but encrypted network is not
routing. I nother words, I have created a tunnel so that private
network 192.168.1.x at location A can route to 192.168.2.x at location
B, but I can only ping the Ethernet interface on router A from the B
network for some reason. All other nodes time out.

Here is my config:

Current configuration : 1855 bytes
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
service password-encryption
hostname XX
logging rate-limit console 10 except errors
enable password 7 xxxxxxxxxxx
ip subnet-zero
no ip finger
no ip dhcp-client network-discovery
crypto isakmp policy 20
authentication pre-share
group 2
crypto isakmp key xxxxxxxxxxxx address
crypto ipsec transform-set dsl esp-des esp-md5-hmac
crypto map tunnelct 10 ipsec-isakmp
set peer
set transform-set dsl
match address 110
bridge irb
interface Ethernet0
ip address
ip nat inside
interface ATM0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
no ip mroute-cache
no atm ilmi-keepalive
pvc 0/35
encapsulation aal5snap
dsl operating-mode auto
bridge-group 1
hold-queue 224 in
interface BVI1
ip address
ip nat outside
crypto map tunnelct
ip classless
ip route BVI1
no ip http server
ip nat inside source route-map nonat interface BVI1 overload
access-list 101 deny ip
access-list 101 permit ip any
access-list 110 permit ip
route-map nonat permit 10
match ip address 101
bridge 1 protocol ieee
bridge 1 route ip
banner motd ^C Access is Prohibited. Violators will be Prosecuted! ^C
line con 0
password 7 xxxxxxxxxxxx
transport input none
stopbits 1
line vty 0 4
exec-timeout 0 0
password 7 xxxxxxxxxx
scheduler max-task-time 5000

