Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > Newsgroups > Computing > Cisco > Cisco 1720 access-lists

Thread Tools

Cisco 1720 access-lists

Nite Rider
Posts: n/a

I have a VPN server at and is a new ip
address that I am going to get. The router is a cisco 1720 with 12.1
IOS. I have a network that shares the ip
address through NAT. Basically what I want to do is pass vpn traffic
from to, along with some tcp ports. Will
the following commands work for the network and VPN. What I don't want
is all data going inside the network to be blocked as then the
internet wouldn't work, just so I can get VPN without leaving my
server wide open. So if this won't work, what will.

configure terminal
interface fa0
ip address secondary (new public ip)
ip address (already there)(LAN DHCP w/ NAT)
ip adresss secondary (already there,
public ip used by network)
ip access-group 101 in (will not use if list will work in ip static
ip nat inside source static (or ip nat
inside source static list 101
configure terminal
access-list 101 permit tcp eq 1723
access-list 101 permit tcp eq 13579 (or
access-list 101 permit tcp eq 3333 (another
computer that serves TS)
access-list 101 permit gre
access-list 101 deny icmp
access-list 101 deny ip
access-list 101 deny udp
access-list 101 deny tcp
(do I have to allow stuff for the other computers because I didn't
deny the rest of the dhcp so I think not)
Reply With Quote

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Giving Vonage voice packets priority with Cisco 1720 Albert Wiersch Cisco 0 05-14-2004 07:31 PM
Cisco 1720 & WIC 1T Card Cisco 1 04-12-2004 05:32 PM
Cisco 1720 Router/Cisco 1538 Micro Hub for SALE! CHEAP sychial Cisco 0 02-18-2004 09:20 AM
Cisco 1720 Dialup Failover Blech Cisco 1 02-09-2004 11:21 PM
Walkthrough for VPN setup on Cisco 1720 George M. Karaganis Cisco 0 12-12-2003 05:12 PM