Cisco | Cisco IOS router to Meraki Appliance | site-to-site VPN with Zone based Firewalling

Lately I'm busy to configure Cisco IOS routers in combination with Remote offices where we place Meraki Appliances (like the MX64, MX65 or the Z1) When we do this we create also a VPN connection (site to site). In this setup the Main office has a Cisco IOS router. Configuration of the Main Office. (Cisco … Continue reading Cisco | Cisco IOS router to Meraki Appliance | site-to-site VPN with Zone based Firewalling

Advertisements

Cisco | IOS version difference in case of use NO_NAT

Since a couple of years actually I noticed that when I use recent IOS versions on a Cisco ISR device. That there are some struggles with NAT rules in combination with a VPN client. In somecases you have to put the access-list for the NAT rule with a Permit like below. ip access-list extended ACL_OUTSIDE_NO_NAT … Continue reading Cisco | IOS version difference in case of use NO_NAT

Office 365 installation / communication issues, with Cisco IOS router and Trustwave Webmarshal.

Solved a problem with a Cisco IOS router in combination with office365. In the situation they used a proxy server from Trustwave Webmarshal. On the cisco router was configured that port 80 and 443 for users were denied so the users had to use the proxy server to go online. Webmarshal configuration: Needed information for … Continue reading Office 365 installation / communication issues, with Cisco IOS router and Trustwave Webmarshal.

Cisco IOS Router | Enable configuration for KPN Customer Fiber Internet (KPN Glasvezel Particulier)

Few days ago. Me and my colleague were struggling with a configuration to enable internet access to a Fiber internet connection of KPN (it wasn’t a business line but a home user internet connection) To enable this configuration. You can do the following: On the internet interface (we used a HWIC-4ESW) the following commands. (With … Continue reading Cisco IOS Router | Enable configuration for KPN Customer Fiber Internet (KPN Glasvezel Particulier)

How to create a U-Turn on a Cisco IOS Router for a Cisco VPN Client

Today I faced the problem to create a U-Turn on a IOS router for Cisco VPN Clients. The Red line is the internet traffic which is going to be used over the Cisco VPN client and the blue line is the normal internal LAN traffic. Well no I know how to do it and it … Continue reading How to create a U-Turn on a Cisco IOS Router for a Cisco VPN Client

Change Radius-server host to Radius server

Today I was configuring a Cisco router ( ISR2 ) 3945 and on the moment that I configured the Radius settings for the VPN login. Did i get a message ( warning ) "The CLI will be deprecated soon 'radius-server host <IP address>' Please move to 'radius server <name>' CLI." Well okay first was it … Continue reading Change Radius-server host to Radius server

Cisco Router – Site to site configuration on a router with 2 BGP interfaces and 1 Loopback interface with External IP.

How to create a Site-to-Site VPN Between a cisco ASA to a Cisco IOS router with 2 BGP interfaces and a Loopback Interface. I had some days ago a problem. I had a vpn connection but there was no traffic going over this connection. Below in the diagram how I created this solution and how … Continue reading Cisco Router – Site to site configuration on a router with 2 BGP interfaces and 1 Loopback interface with External IP.