Hi Kevin, thanks for this explanation! It has really helped me configuring my ISR at home. I'm a Cisco-newbie, but your clear explanations made all the puzzle pieces fall into place. I'm gonna check out all the other Packet Tracer Labs for sure!
Many thanks for your kind comments, it is great to get feedback on the videos. I do intend to make more in the future, I would like to complete a series on routing and routing technologies next. I have been extremely busy at work the last few months and will be for a little while yet, but I will get back to making videos as soon as I can. Best wishes to you all. Kevin
I see that this is the last video of the course and I want to thank you very much for making these! I'm not a network admin but am trying to get my CCNA and these videos have been incredibly helpful in trying to understand how Packet Tracer works and how to build a base network to practice with!
@3:25 - why did you connect the Cloud-PT to the corporate router? I thing it should be connected to the ISP router, and the ISP router should be issuing ip-address to the client pc.
Super good tutorial. The speaking could have been better if you didn't hiss. And I feel like the video duration could have been shorter too. But the config is working damn fine. Mucha gracias.
Hi @REMOTETRAININGSOLUTIONS, would like to ask. How do we do if we have two or more remote access client devices wants to get different ip from different vlan inside network?
Thanks a lot for this video. I was able to configure this lab on a Cisco Packet Tracer. When I tried to do the same on the real equipment using a private IP address for testing, AnyConnect gave me a network connetivity issue. Should I do any additional configuration on a router and AnyConnect? I would be grateful if you could help me to resolve this issue.
I followed all the instructions, but when I am trying to connect to VPN tunnel from PC host, I always get: "VPN is Disconnected" and "Connection Time Out". From the router where VPN and crypto were configured, I can see the deleted connection there. Why does it get deleted? Did I miss something in configuration?
make sure you select correct interface in the second last step. It is supposed to be your corporate outbound interface. If it still doesn't work, try redoing configurations.
I have attempted your configuration, however when I get to the entry for "crypto map CLIENT_MAP 10 ipsec-isakmp dynamic DYNMAP" I get the following error: "Attempt to change dynamic map tag for existing crypto map is ignored". Any suggestions?
From the message you mention it sounds like you may have already entered the crypto command but with a slightly different name for the dynamic map tag "DYNMAP". Best thing to do is to type show running-config from privileged exec mode and double check the tags. It's normally easy to find this in the running configuration.
RemoteTrainingSolutions No, it actually wasn't that... I did it 5 or 6 times thinking I was an idiot and made a typo. Turns out it must be a bug in Packet Tracer. I received my Cisco 1941 this week and your config worked immediately. Also of note is that when connecting from most older gen clients (mac osx ipsec client) that the newer DH groups, encryption and hashing won't work, though I believe that has changed in the latest version. Had you not done yours in the config you did, I wouldn't have been able to connect from my mac! Cheers!
Hi turnthatprop, that is very interesting, thanks for sharing the information. I noticed that occasionally when working on more complex Packet Tracer exercises something that worked on one version of Packet Tracer played up or didn't work on another version. Great that it worked fine on the 1941, it would have been very worrying if it had not ;-) Best wishes Kevin
Hi Kevin, thanks for this explanation! It has really helped me configuring my ISR at home. I'm a Cisco-newbie, but your clear explanations made all the puzzle pieces fall into place. I'm gonna check out all the other Packet Tracer Labs for sure!
Many thanks for your kind comments, it is great to get feedback on the videos. I do intend to make more in the future, I would like to complete a series on routing and routing technologies next. I have been extremely busy at work the last few months and will be for a little while yet, but I will get back to making videos as soon as I can. Best wishes to you all. Kevin
thank you Kelvin, your videos are so awesome and helpful!!! hope to see more :)
I see that this is the last video of the course and I want to thank you very much for making these! I'm not a network admin but am trying to get my CCNA and these videos have been incredibly helpful in trying to understand how Packet Tracer works and how to build a base network to practice with!
This is very helpful as quick refresh for VPN configuration.. Hope you got more views, keep doing the good stuff!!
The guy who did this is no longer with us
Thanks so much for these videos - this helped me loads with my uni work
@3:25 - why did you connect the Cloud-PT to the corporate router?
I thing it should be connected to the ISP router, and the ISP router should be issuing ip-address to the client pc.
Super good tutorial. The speaking could have been better if you didn't hiss. And I feel like the video duration could have been shorter too. But the config is working damn fine. Mucha gracias.
Hi @REMOTETRAININGSOLUTIONS, would like to ask. How do we do if we have two or more remote access client devices wants to get different ip from different vlan inside network?
Thanks a lot for this video. I was able to configure this lab on a Cisco Packet Tracer. When I tried to do the same on the real equipment using a private IP address for testing, AnyConnect gave me a network connetivity issue. Should I do any additional configuration on a router and AnyConnect? I would be grateful if you could help me to resolve this issue.
The Access Point & DSL-modem devices doesn't offer the option for DHCP/DNS like in real devices?
Thank you very much :)🙂
I followed all the instructions, but when I am trying to connect to VPN tunnel from PC host, I always get: "VPN is Disconnected" and "Connection Time Out". From the router where VPN and crypto were configured, I can see the deleted connection there. Why does it get deleted? Did I miss something in configuration?
make sure you select correct interface in the second last step. It is supposed to be your corporate outbound interface. If it still doesn't work, try redoing configurations.
I have attempted your configuration, however when I get to the entry for "crypto map CLIENT_MAP 10 ipsec-isakmp dynamic DYNMAP" I get the following error: "Attempt to change dynamic map tag for existing crypto map is ignored".
Any suggestions?
From the message you mention it sounds like you may have already entered the crypto command but with a slightly different name for the dynamic map tag "DYNMAP". Best thing to do is to type show running-config from privileged exec mode and double check the tags. It's normally easy to find this in the running configuration.
RemoteTrainingSolutions No, it actually wasn't that... I did it 5 or 6 times thinking I was an idiot and made a typo. Turns out it must be a bug in Packet Tracer. I received my Cisco 1941 this week and your config worked immediately.
Also of note is that when connecting from most older gen clients (mac osx ipsec client) that the newer DH groups, encryption and hashing won't work, though I believe that has changed in the latest version. Had you not done yours in the config you did, I wouldn't have been able to connect from my mac!
Cheers!
Hi turnthatprop, that is very interesting, thanks for sharing the information. I noticed that occasionally when working on more complex Packet Tracer exercises something that worked on one version of Packet Tracer played up or didn't work on another version. Great that it worked fine on the 1941, it would have been very worrying if it had not ;-) Best wishes Kevin
It was extremely helpful, thx
when connecting the vpn on PC it says connection timeout everytime, what can i do
same, maybe it is the packet tracer bugs, idk
Probably
@@Emmy_Sploit i remember somehow i fix that but now i forgot
I actually did it other way around
Excellent!