How to configure Site-Site IPSec VPN in Cisco Routers (IOS)


  4. Your wildcard mask in your ACL is wrong. All traffic will be denied.
    should be otherwise your ACL will not work.

  5. Setup a Crypto ACL

    This ACL defines the protected traffic that passes through the VPN tunnel. Customize the ACL as per your organisation needs.

    VPN-HQ(config)# ip access-list 101 permit ip

    Is the above access-list statement right . packet tracer not accepting this

  6. The problem is the access-list,the wild card of is expecting an ip add of
    NOTE: zesros means i care while ones means i do not care in access-list wild card.

