Guest User

Untitled

a guest
Jul 18th, 2018
100
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.73 KB | None | 0 0
  1. access-list outside_cryptomap_3; 5 elements; name hash: 0x4c48cff2
  2. access-list outside_cryptomap_3 line 1 extended permit ip <CUSTOMER_LAN_SUBNET> 255.255.255.0 <OUR_SUBNET> 255.255.255.192 (hitcnt=474)
  3. access-list outside_cryptomap_3 line 2 extended permit ip <CUSTOMER_CLOUD1_SUBNET> 255.255.255.0 <OUR_SUBNET> 255.255.255.192 (hitcnt=464)
  4. access-list outside_cryptomap_3 line 3 extended permit ip <CUSTOMER_CLOUD2_NAT_SUBNET> 255.255.255.0 <OUR_SUBNET> 255.255.255.192 (hitcnt=463)
  5. access-list outside_cryptomap_3 line 4 extended permit ip <CUSTOMER_CLOUD3_NAT_SUBNET> 255.255.255.0 <OUR_SUBNET> 255.255.255.192 (hitcnt=464)
  6. access-list outside_cryptomap_3 line 5 extended permit ip <CUSTOMER_CLOUD4_NAT_SUBNET> 255.255.255.0 <OUR_SUBNET> 255.255.255.192 (hitcnt=464)
  7.  
  8. crypto map outside_map 3 match address outside_cryptomap_3
  9. crypto map outside_map 3 set pfs group5
  10. crypto map outside_map 3 set peer <OUR_PUBLIC_IP>
  11. crypto map outside_map 3 set ikev1 transform-set ESP-AES-256-SHA
  12. crypto map outside_map 3 set reverse-route
  13.  
  14. nat (inside,outside) source static NONAT_NETWORKS NONAT_NETWORKS destination static Txxxxx_Remote_Network Txxxxx_Remote_Network no-proxy-arp route-lookup
  15. nat (inside,outside) source static CLOUD_DMZ CLOUD_NAT_DMZ destination static Txxxxx_Remote_Network Txxxxx_Remote_Network no-proxy-arp
  16. nat (inside,outside) source static CLOUD_MGMT CLOUD_NAT_MGMT destination static Txxxxx_Remote_Network Txxxxx_Remote_Network no-proxy-arp
  17. nat (outside,inside) source static Txxxxx_Remote_Network Txxxxx_Remote_Network destination static CLOUD_NAT_DMZ CLOUD_DMZ no-proxy-arp
  18. nat (inside,outside) source static CLOUD_LST CLOUD_NAT_LST destination static Txxxxx_Remote_Network Txxxxx_Remote_Network no-proxy-arp
  19. nat (outside,inside) source static Txxxxx_Remote_Network Txxxxx_Remote_Network destination static CLOUD_NAT_LST CLOUD_LST no-proxy-arp
  20. nat (outside,inside) source static Txxxxx_Remote_Network Txxxxx_Remote_Network destination static CLOUD_NAT_MGMT CLOUD_MGMT no-proxy-arp
  21.  
  22. object-group network NONAT_NETWORKS
  23. network-object <CUSTOMER_LAN_SUBNET> 255.255.255.0
  24. network-object <CUSTOMER_CLOUD1_SUBNET> 255.255.255.0
  25.  
  26. object network Txxxxx_Remote_Network
  27. subnet <OUR_SUBNET> 255.255.255.192
  28.  
  29. object network CLOUD_DMZ
  30. subnet <CUSTOMER_CLOUD3_SUBNET> 255.255.255.0
  31.  
  32. object network CLOUD_NAT_DMZ
  33. subnet <CUSTOMER_CLOUD3_NAT_SUBNET> 255.255.255.0
  34.  
  35. object network CLOUD_MGMT
  36. subnet <CUSTOMER_CLOUD4_SUBNET> 255.255.255.0
  37.  
  38. object network CLOUD_NAT_MGMT
  39. subnet <CUSTOMER_CLOUD4_NAT_SUBNET> 255.255.255.0
  40.  
  41. object network CLOUD_LST
  42. subnet <CUSTOMER_CLOUD2_SUBNET> 255.255.255.0
  43.  
  44. object network CLOUD_NAT_LST
  45. subnet <CUSTOMER_CLOUD2_NAT_SUBNET> 255.255.255.0
  46.  
  47. Routing failed to locate next hop for ICMP from outside:<OUR_NETWORK>/1 to inside:<cloud_mgmt_ip>/0
Add Comment
Please, Sign In to add comment