Thursday, January 24, 2013

IOS in-place remote interface re-addresing.

Every network engineer sooner or later faces the problem of remote re-addressing. If the interface you need to re-address is the same interface you use to log into the router, you encounter sort of egg and chicken problem.

Imagine that you have remote branch with IOS router connected to DSL service provider. The subnet between your router and service provider router is 192.168.0.0/30. Your router has .1 on the last octet, default route is set to .2.



Thursday, January 17, 2013

Cisco ASA SSL VPN with AnyConnect: From zero to hero!





My favourite way of learning things is to create some very basic configuration, run it, then learn the details by playing around and testing every single feature i find in docs. Unfortunately, most of configuration guides overhelms us with details without giving the big picture. It can dramatically reduce fun of learning new things. Cisco ASA SSL VPN configuration guide is no exception to this rule. You need to read all the docs, then figure out how to start your own configuration.

The goal is to create very-very basic SSL VPN configuration using ASA CLI. Then tweak this configuration to achive basic, but fully functional VPN.