Туннель работает, но клиенты из локалки в него не попадают. Сам роутер же в туннель спокойно ходит.
Полагаю, что из-за NAT.Конфиг:
!
interface GigabitEthernet0/0
ip address 22.22.22.22 255.255.255.240
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
crypto map TUNNEL-MAP
!
interface GigabitEthernet0/1
ip address 33.33.33.33 255.255.255.240
ip access-group 101 in
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
!
!
interface Vlan2
ip address 10.80.1.1 255.255.255.0
ip nat inside
ip virtual-reassembly
ip policy route-map ISP1-NAT
!
interface Vlan3
ip address 192.168.1.1 255.255.255.0
ip nat inside
ip virtual-reassembly
ip policy route-map ISP2-NAT
!
ip route 0.0.0.0 0.0.0.0 22.22.22.1
ip route 0.0.0.0 0.0.0.0 33.33.33.1
ip nat inside source route-map ISP1-NAT interface GigabitEthernet0/0 overload
ip nat inside source route-map ISP2-NAT interface GigabitEthernet0/1 overload
access-list 10 permit 192.168.1.0 0.0.0.255
access-list 121 permit ip 10.80.1.0 0.0.0.255 172.16.197.0 0.0.0.255
access-list 122 deny ip 10.80.1.0 0.0.0.255 172.16.197.0 0.0.0.255
access-list 122 permit ip 10.80.1.0 0.0.0.255 any
route-map ISP2-NAT permit 10
match ip address 10
match interface GigabitEthernet0/1
set ip default next-hop 33.33.33.1
!
route-map ISP1-NAT permit 20
match ip address 122
match interface GigabitEthernet0/0
set ip default next-hop 22.22.22.1
!
В туннель идёт сеть 10.80.1.0/24