looks like tcp 47, 50 and udp 500 http://www.cisco.com/en/US/customer/products/hw/routers/ps4081/products_tech_note09186a0080094267.shtml
Mike Thomas N wrote: > > I got a lab setup simulating DMVPN with IPSec over GRE. I > would like to > apply an access control list to the outside interface of the > routers to > block everything, except for TCP/UPD ports that are needed for > GRE, IPSec, > IKE and those related to DMVPN implementation. Does someone > know what ports > should I open on the ACL? Thanks! > > Thomas > > Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=74084&t=74028 -------------------------------------------------- **Please support GroupStudy by purchasing from the GroupStudy Store: http://shop.groupstudy.com FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html

