Salve a tutti, io sono nuovo e cercavo qualcuno che gentilmente mi possa aiutare.
Ho configrato il mio cisco a casa per accettare connessioni VPN e funziona tutto benissimo.
Solo che adesso qua dove lavoro hanno messo un firewall che fa uscire solo certe porte (telnet, http, ftp...) e non la VPN.
Domanda... come faccio sul CISCO di casa a cambiare la porta di ascolto della connessione in entrata VPN
Allego la configurazione, abbiate pazienza se è pietosa, ma sono alle prima armi e l'ho scopiazzata a destra e a manca.
Grazie
PS: anzi se ho sbagliato qualcosa nella configurazione fatemi sapere.
-------------------------------------------------------------------
Current configuration : 4699 bytes
!
version 12.4
no service pad
no service timestamps debug uptime
no service timestamps log uptime
service password-encryption
!
hostname Ghost
!
boot-start-marker
boot-end-marker
!
no logging console
enable password 7 *PASS*
!
no aaa new-model
!
resource policy
!
no ip source-route
!
!
no ip dhcp use vrf connected
ip dhcp excluded-address 10.11.12.1 10.11.12.5
!
ip dhcp pool LUIGI
network 10.11.12.0 255.255.255.0
dns-server 62.211.69.150 212.48.4.15
default-router 10.11.12.1
!
!
ip cef
no ip domain lookup
ip name-server 62.211.69.150
ip name-server 212.48.4.15
ip name-server 151.99.125.1
ip name-server 217.141.250.206
no ip bootp server
vpdn enable
!
vpdn-group VPN
! Default PPTP VPDN group
accept-dialin
protocol pptp
virtual-template 1
!
!
!
!
username *USER* password 7 *PASSWORD*
!
!
no crypto isakmp enable
!
!
!
interface Ethernet0
description Interfaccia LAN Interna
ip address 10.11.12.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat inside
ip virtual-reassembly
no ip mroute-cache
priority-group 1
no cdp enable
!
interface Ethernet2
no ip address
shutdown
hold-queue 100 out
!
interface ATM0
no ip address
no ip mroute-cache
no atm ilmi-keepalive
dsl operating-mode auto
hold-queue 224 in
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
!
!
interface Virtual-Template1
ip unnumbered Ethernet0
peer default ip address pool PERVPN
ppp encrypt mppe auto required
ppp authentication ms-chap-v2
!
interface Dialer0
description Alice ADSL
ip address negotiated
ip access-group 100 in
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly
encapsulation ppp
dialer pool 1
priority-group 1
no cdp enable
ppp pap sent-username *USERNAME* password 7 *PASS*
ppp ipcp dns request
!
ip local pool PERVPN 10.11.13.2
ip route 0.0.0.0 0.0.0.0 Dialer0
!
no ip http server
no ip http secure-server
!
ip nat inside source list 9 interface Dialer0 overload
ip nat inside source static tcp 10.11.12.5 80 interface Dialer0 65001
!
logging source-interface Ethernet0
logging 10.11.12.2
access-list 8 remark ACCESSO A TERMINALE
access-list 8 permit 10.11.12.3 log
access-list 8 permit 10.11.12.2 log
access-list 9 remark NAT
access-list 9 permit 10.11.12.0 0.0.0.255
access-list 100 remark Ingresso_Internet
access-list 100 deny ip 0.0.0.0 0.255.255.255 any
access-list 100 deny ip 1.0.0.0 0.255.255.255 any
access-list 100 deny ip 2.0.0.0 0.255.255.255 any
access-list 100 deny ip 5.0.0.0 0.255.255.255 any
access-list 100 deny ip 7.0.0.0 0.255.255.255 any
access-list 100 deny ip 10.0.0.0 0.255.255.255 any
access-list 100 deny ip 127.0.0.0 0.255.255.255 any
access-list 100 deny ip 169.254.0.0 0.0.255.255 any
access-list 100 deny ip 172.16.0.0 0.15.255.255 any
access-list 100 deny ip 192.0.2.0 0.0.0.255 any
access-list 100 permit icmp host 192.168.100.1 any
access-list 100 deny ip 192.168.0.0 0.0.255.255 any
access-list 100 deny ip 224.0.0.0 31.255.255.255 any
access-list 100 deny ip host 255.255.255.255 any
access-list 100 deny ip host 0.0.0.0 any
access-list 100 deny tcp any any lt 1024
access-list 100 deny udp any any lt 1024
access-list 100 deny icmp any any redirect
access-list 100 permit ip any any
dialer-list 1 protocol ip permit
no cdp run
!
!
control-plane
!
!
line con 0
no modem enable
line aux 0
line vty 0 4
access-class 8 in
password 7 1304191619091129282D27
login
Cambio porta VPN
Moderatore: Federico.Lagni