Hello, I am looking at the basics of the network and I have a question. 1)In phase 1 of an ipsec tunnel there is a key What does this key correspond to 2)In phase 2 there's another key, what does it correspond to 3) Despite my numerous internet searches, I still can't understand what IKE and ISAKMP are in simple terms 4) why do we say that the security parameters are negotiated between the 2 peers when we define them manually? Thank you very much.
For Phase 1, Ikev1 policy no. that we define is locally significant. So if we have multiple ikve1 policy no and different parameters present in it for different tunnel, then how can we get to know which ikev1 policy no it is taking to reach to any specific tunnel as we are not calling that policy no. In the tunnel group...can you please suggest on this?
Hello Guy I appreciate this video and the way whose you have configured with precision. So I would want to know possible of having this GNS3 image ASA if perrhaps ?
Hi. Thank you for your video. However, I have tried your steps but it doesnt seem to work. Not sure what I am missing. Do we need to apply any NAT rules on the asa firewalls?
It is possible to configure a VPN Site to Site using Peer ID as a URL, so if the IP of the Remote Peer changes, the Firewall uses DNS to resolve the new IP Address. This is supported by which models of ASA Firewall Equipment?
@@vishu604174664 There are Tunnel, Site-to-Site, or L2L, and Transport, or Point-to-Point VPNs The Difference between them, is that in Tunnel VPNs, the Original IP Header is sent as the Payload of the VPN, whereas Transport VPNs use the original IP Header for the Carrier Packet.
Missing IMP Command On (Router and ASA) Hi friends Kindly configure the commands for site to site VPN . route on router 1 ip route 0.0.0.0 0.0.0.0 10.1.1.2 route on Asa 1 route inside 150.1.1.0 255.255.255.0 10.1.1.1 route outside 0.0.0.0 0.0.0.0 4.2.2.2 route On R2 ip route 0.0.0.0 0.0.0.0 20.1.1.2 Asa 2 route outside 0.0.0.0 0.0.0.0 4.2.2.1 route inside 160.1.1.0 255.255.255.0 20.1.1.1 REST ALL SAME CONFIGURATION. Now you can telnet from R1 to R2. Loopback
Object network basic configration is it required ? Well finally i checked guys this incomplete video dont watch he is making a fool everyone as object group network is requied without it the HQ to Remote LAN Segment not work and intresting traffic also needs to match
can you learn that much good hindi as he speaks English? Its secondary language so doesn't matter. We are able to understand him while it is our second language but you have problem.
I have watched a lot of cisco IPSEC tunnels. This is the simplest and easy to follow. Thank you
Thanks for watching
Very nice explanation step by step and a simple way thank you.....🙏🙏
Thanks for watching
good! Other ipsec videos talk too much! This one is to the point.
wonderfully explained, thank you very much!
Thanks for watching
Hello,
I am looking at the basics of the network and I have a question.
1)In phase 1 of an ipsec tunnel there is a key What does this key correspond to
2)In phase 2 there's another key, what does it correspond to
3) Despite my numerous internet searches, I still can't understand what IKE and ISAKMP are in simple terms
4) why do we say that the security parameters are negotiated between the 2 peers when we define them manually?
Thank you very much.
Very helpful.. Thank you very much Sir 🙏🙏🙏
Thanks for watching
For Phase 1, Ikev1 policy no. that we define is locally significant.
So if we have multiple ikve1 policy no and different parameters present in it for different tunnel, then how can we get to know which ikev1 policy no it is taking to reach to any specific tunnel as we are not calling that policy no. In the tunnel group...can you please suggest on this?
Hello Guy
I appreciate this video and the way whose you have configured with precision.
So I would want to know possible of having this GNS3 image ASA if perrhaps ?
Which version of ASA firewall is used in this video ?
Can this be used in packet tracer?
I want to do in router.. do u have video for that? Good video btw
Will upload soon
Hi. Thank you for your video. However, I have tried your steps but it doesnt seem to work. Not sure what I am missing. Do we need to apply any NAT rules on the asa firewalls?
@@markp5492 Kindly share missing configuration , i tried same but it's now working
very simple very powerful, thank you
Sir.. waiting for video of Cisco anyconnect configurations..
Would it be possible to share the "show run" of all 4 devices? Thank you!
You can check my blog-technet2u.com/configure-site-to-site-ipsec-vpn-on-cisco-asa-firewall/
Please how do i configure a vpn failover on the ASA assuming i am a branch connected to 2 sites via vpn on asa..
It is possible to configure a VPN Site to Site using Peer ID as a URL, so if the IP of the Remote Peer changes, the Firewall uses DNS to resolve the new IP Address. This is supported by which models of ASA Firewall Equipment?
nice explanation.......easy to understand
Can I use that code in Cisco packet Tracer?
Actually I haven't tried in packet tracer
kindly share if configuration is missing i have configured same on GNS but it,s not working ,kindly suggest
Thanks
very good, please zoom your tutorials so that we can see text
Good explanation, to the point. Thanks for the video.
Hi Sir,
Can you create video for iKEv2?
Sure will create...
Bhoot hard..awesome explanation
thanks
Very good and simple.
Thanks!
Nice. Can u tell please meaning of tunnel group. And ipsec 121? Also next line ipsec attributes
it's actually "#ipsec-l2l", stands for LAN to LAN
@@TheDJStandy what are the other types?
@@vishu604174664 There are Tunnel, Site-to-Site, or L2L, and Transport, or Point-to-Point VPNs
The Difference between them, is that in Tunnel VPNs, the Original IP Header is sent as the Payload of the VPN, whereas Transport VPNs use the original IP Header for the Carrier Packet.
Missing IMP Command On (Router and ASA)
Hi friends Kindly configure the commands for site to site VPN .
route on router 1
ip route 0.0.0.0 0.0.0.0 10.1.1.2
route on Asa 1
route inside 150.1.1.0 255.255.255.0 10.1.1.1
route outside 0.0.0.0 0.0.0.0 4.2.2.2
route On R2
ip route 0.0.0.0 0.0.0.0 20.1.1.2
Asa 2
route outside 0.0.0.0 0.0.0.0 4.2.2.1
route inside 160.1.1.0 255.255.255.0 20.1.1.1
REST ALL SAME CONFIGURATION.
Now you can telnet from R1 to R2. Loopback
There is something missed here.i can not ping from one router to another one even without ipsec tunnel
Great video well detailed.
thanks
please the routing from where to where
Thanks for the explanation!
Thanks for explanation.
Object network basic configration is it required ? Well finally i checked guys this incomplete video dont watch he is making a fool everyone as object group network is requied without it the HQ to Remote LAN Segment not work and intresting traffic also needs to match
it is not work with me
Do steps by step , it will work
Please try to upload P2P
He hide the object network configuration please share the full content either you dont wish to make videos on youtube
Maybe learn english before
can you learn that much good hindi as he speaks English? Its secondary language so doesn't matter. We are able to understand him while it is our second language but you have problem.