One VPN connection at a time.

I have an issue with the Cisco 4.01 VPN client connecting more then one connection.
I have it set to connect to the remote sight using the following parameters
Group Authentication
Transparent Tunneling with IPSec over UDP (Nat / Pat)
I have also selected allow local LAN access
I am connecting to the remote network through a Sonicwall firewall to the remote Cisco device.
I have no problem getting connected to the remote network. All connection attempts work.
If I have a VPN connection connected and active the next connection that is made disconnects the first one. This is repeatable and constant. So each connection is successful but it always disconnects any session that is active from that location.
Multiple sessions are possible as long as they don’t originate from the one site. In other words workers working from home do not affect workers working from the main office.
Any Ideas as to what may be causing this?

just wondering what sort of cisco device we are discussing here.
the issue maybe related to the vpn client pool.
e.g. the pool should start with x.x.x.1, not an entire subnet.

Similar Messages

  • Problem: More than one VPN user at a time - Airport Extreme Base Station

    Hey Folks,
    Myself and my girlfriend both have work laptop PCs. It appears that the AEBS only allows one VPN user at a time. When a new user is logging in, it will kick out the other user.
    Is there a setting on the AEBS that will allow more than one VPN user? Is it a firewall setting?
    Thanks for your help.

    It may the the firmware. 7.3.1. does seem as friendly to some VPNs as 7.2.1. where we had no problem running two VPNs. You could consider switching back to 7.2.1.
    d

  • Configuring PPP options for only one VPN connection

    How do you configure PPP options for only one VPN connection that is using L2TP over IPSec? The built-in VPN client in 10.4.9 is failing authentication because it won't talk MSCHAP-V2 (this is the only authentication protocol I can use) with the server. I am able to establish a connection if I add the following to /etc/ppp/options:
    refuse-eap
    refuse-pap
    refuse-chap
    refuse-mschap
    require-mschap-v2
    However, these options will affect all PPP connections. The preference file that contains the network configurations (/Library/Preferences/SystemConfiguration/preferences.plist) also contains PPP options for each specific network service. After some searching around, I found that there are several keys that seem promising (MSCHAP2, etc.). But these keys take a string value and I have no clue what they should be. These keys are defined in SCSchemaDefinitions.h file.
    Any ideas?
      Mac OS X (10.4.9)  

    Hi Brian,
    I just tried to check all of ADDT´s "includes" files for any internal references (read: "require" or "require_once" statements) to the file "tNG_config.inc.php". So far I can only see this file referenced in the file "tNG.inc.php" (within the "$KT_tNG_uploadFileList1" array).
    So what could this mean ? Maybe you´ll have to make copies of the the original "tNG.inc.php" as well and save them as, say, "tNG.inc_ital.php" file plus make sure that these copies internally point to a different "tNG_config_ital.inc.php" file -- because it´s always the first mentioned file which gets referenced from e.g. an ADDT login page (see the "Load the tNG classes" - part)
    I want to use ADDT’s User Registration Wizard and I have looked at all the neat stuff in the Control Panel/Login Settings
    The Control Panel will always update the main "tNG_config.inc.php" file, so any further modifications will have to become manually applied to the custom files you´re creating.
    Cheers,
    Günter

  • More then one VPN connection?

    I made ​​a good start using VPN.
    But when I try to create additional VPN connections.
    But the links already established, interrupted.
    So i can online have one VPN established...
    How do i set the server up, so that i can have more?

    Hi There
    I have this exact same problem on L2TP VPN on Lion Server 10.7.3 and earlier (I've yet to try 10.7.4 - what version are you using?) What I've found is you can't have more than on client from the same IP so say if I connect to our VPN via an Internet connection if someone else connects on the same Internet connection they knock me off. But multiple connections are possible from different Internet connections at the same time. So I can have my laptop connected via my home Internet connection (adsl) and connect at the same time from my iPad on 3G but if I use my Laptop and iPad on the same home internet (adsl) whichever connects 1st knocks the other off - hope this makes sense.
    It drives me mad as myself and another employee share the same internet connection (adsl) for a few weeks of the year there is no 3G signal. On our old 10.4 server via PPTP we could have as many VPN connections as we wanted (never went higher than about 5 at a time) from the same internet connection. Not sure if this is a limitation of L2TP or Lion Server have still not managed to get PPPTP to work on Lion server. Going to give 10.7.4 a go 1st when I'm feeling brave...
    Ben

  • Only one wireless connection at a time....Please Help

    Since updating to 10.4.9 I can only connect one computer wirelessly at a time....when I had 10.4.8 on all three laptops ther were no wireless problems at all...Is there anyone else with this problem?

    Okay, so when one computer is using the 802.11 band, no other computers can establish a media-level connection. Is that correct? In essence, the one connection locks out everything else. The MAC addresses of the other computers are not in the arp cache of the Actiontec, because they are not able to communicate via 802.11. The Multiplexing has gone from OFDM.
    This is a weird one. I think I was wrong about the configuration. As odd as it sounds, it must be something with 10.4.9. I think when you rolled back to 10.4.8 you must have retained the Airport2 kext. If you get info on /System/Library/Extensions/AppleAirPort2.kext it should be 4.0.4, I think. 4.0.5 is in 10.4.9. Further granularity can be seen if you enter this in Terminal:
    $kextstat | grep -i airport
    I get this:
    81 0 0x735000 0x69000 0x68000 com.apple.iokit.AppleAirPort2 (405.1) <37 16 11 2>
    which says its AppleAirPort2 version 4.0.5.1 If you use pacifist and the 10.4.8 install disk you can get your original one back.
    Lots of people have reported problems with 10.4.9 and Airport. But yours is a doozy.

  • Suddenly only one computer connects at a time

    I have an airport extreme.  It's connected by ether to my cable modem unit.  My desktop iMac runs it's online through the extreme....and then whenever I bring my work laptop home (Powerbook) it automatically joins my wireless network.  It' worked this way for over a year.
    The other night my server/internet provider went down.  It was not my malfunction, it was the server company.  But I didn't know it at first and I was trying to get it back up on my iMac.  When I found out it was my server, I waited and later that night it came back up and everything was working.  At least my iMac.  I forget whether I tried out my laptop....I think I did, but I was packing to go out of town.
    Now I've arrived back from out of town and I find that the iMac is connected and working to internet but the laptop is not.  I do a diagnostics and restart the modem and the laptop is then online and working.  But then my iMac upstairs is suddenly not online, but the laptop is.  So it seems suddenly that I'm only able to get one of the computers onto the wireless network at a time.  I could do the network diaganostics on the laptop again, which would tell me to restart the modem and then it would probably be working on the laptop, but as the pattern is showing I then suspect my desktop iMac would not be on again.  Why are they connecting only exclusively to each other???  I had not problem prior to this.
    Thanks,
    James

    Open Macintosh HD > Applications > Utilities > AirPort Utility
    Click Manual Setup
    Click the Internet icon, then the Internet Connection tab
    The setting for Connection Sharing is likely Bridge Mode.
    It should be Share a public IP address.
    Make the change and click Update
    Then, it would be a good idea to restart the entire network in sequence. Power everything off then start the Modem first, then next device, etc.

  • AirPort Express, only one device connected at a time.

         I was setting up my uncles Airport Express yesterdy and got everything set up and the wifi signal broadcasting properly. It was then time to set up his iPad. I used a windows computer to set up the iPad and everything was going fine. After the iPad was running and I connected it to the network, I would lose the signal from the PC. From that point forward I would only be able to access the internet on the PC when the iPad's wifi was turned off.
         I have had this problem with other routers before but was never able to figure out the problem. Is there something that I am missing? any help would be appreciated. I set the netork up with the default settings and set up a password to the network that has been entered correctly on both machines. Any help will be appreciated.

    How do you have your Airport Express setup?
    On the Internet tab, what do you have for "Connection Sharing" ?
    Off (Bridge Mode) ?
    Share a public IP address ?
    Other ?
    Is your modem from your Internet provider just a modem, or a router, or a wireless router ????
    More info is needed.

  • Two Macs - only one can connect to Airport at a time

    Starting today, after 10 days of successful operation, when I came home I couldn't connect to my home (new "square" Airport Extreme) network with my Core 2 MacBook Pro. My wife was happily connected on her PowerBook G4.
    Puzzled, I tried a few obvious things:
    Airport OFF, Airport ON ... no joy
    Logout and back in ... no joy
    Restart ... no joy
    Then I turned my attention to the Base Station:
    Restart ... nope
    Change to "None" security ... nope
    Change back to "WPA Personal" ... nope
    Humbled, I stopped and had dinner. My wife's G4 went to sleep, my Intel went to sleep. Now it gets interersting! My Intel woke up first and immediately joined the network -- I'm happy till I hear my wife say SHE can't get connected.
    To make a long story short, I have two laptops on my desk, and only one can connect at a time! This is BIZARRE. Turn off Airport on either one and its buddy gets a connection immediately, and vice versa. Sleep the connected one and the other connects.
    I am out of ideas.
    Errors on the G4:
    Feb 28 20:09:45 localhost configd[35]: WirelessConfigure: 88001003
    Errors on the MBPro:
    various 88001006 errors as reported by others in this forum.
    Both Machines at all the latest updates; the MBPro has the new Extreme software installed from the CD that came with the new hardware.
    I would welcome suggestions ...
    MacBook Pro Core 2   Mac OS X (10.4.8)  
    G4 Cube   Mac OS X (10.4)  

    Software Update is not offering me any Airport updates on the G4 (or the Intel).
    The recent Airport Update, "AirPort Extreme Update 2007-001", is of course only for Intel Macs.
    They could only be "trying to use the same IP address" if they were not configured to use DHCP, but they are configured to use DHCP, and whichever connects does get an address in the 10.0.1.[2-200] range so I think that's not the problem.

  • Hi there, I am trying to connect to my server at work from home using a vpn connection. It connects fine and the time ticks along, but when i click go - connect to server, it comes up with connection failed. Please help!

    Hi there, I am trying to connect to my server at work from home using a vpn connection. It connects fine and the time ticks along, but when i click go - connect to server, it comes up with connection failed. Please help!

    ... when i click go - connect to server, it comes up with connection failed.
    If you're trying to connect to a Bonjour server on the remote network, that won't work over a layer 3 VPN. Use something like Hamachi or one of the SSH-tunnelling Bonjour proxy apps for that.

  • Can I connect more than one bluetooth headset at a time?

    Just got a Panasonic Bluetooth enabled phone, paired fine with the device.  But each time I leave/come back to the house I have to set in settings which headset I want to use.

    Anthony
    I have a Plantronics 975 earpiece that works very well with my Razr.  I
    just got a Panasonic KX-TG7873S phone system for my home, it has a
    "Link-to-Cell" cellular convergence solution, from what I understand it is
    just Bluetooth enabled.  I have paired both device with my Razr.  In
    settings, Bluetooth setting, both device show.  But only one device can
    connect at a time.  If my Plantronics is connected and I choose the
    Panasonic device, the Plantronics device disconnects and the Panasonic
    device then says it is connected.  Both devices work when they
    are connected.  Is it because they are both "headsets"?
    So, to have to remember to connect to one or the other device, depending on
    weather I am coming or going is not practical.
    On Sat, Sep 14, 2013 at 1:14 PM, Verizon Wireless Customer Support <

  • Traffic only allowed one-way for VPN connected computers

    Hello,
    I currently have an ASA 5505.  I have set it up as a remote access SSL VPN. My computers can connect to the VPN just fine.  They just can't access the internal LAN (192.168.250.0).  They can't ping the inside interface of the ASA, or any of the machines.  It seems like all traffic is blocked for them.  The strange thing is that when someone is connected to the VPN, I can ping that VPN-connect machine from the ASA and other machines inside the LAN.  It seems the traffic only allows one way.  I have messed with ACL's with no avail.  Any suggestions please?
    DHCP Pool: 192.168.250.20-50 --> For LAN
    VPN Pool: 192.168.250.100 and 192.168.250.101
    Outside interface grabs DHCP from modem
    Inside interface: 192.168.1.1
    Current Running Config:
    : Saved
    ASA Version 8.2(5)
    hostname HardmanASA
    enable password ###### encrypted
    passwd ####### encrypted
    names
    interface Ethernet0/0
    switchport access vlan 20
    interface Ethernet0/1
    switchport access vlan 10
    interface Ethernet0/2
    switchport access vlan 10
    interface Ethernet0/3
    shutdown
    interface Ethernet0/4
    shutdown
    interface Ethernet0/5
    shutdown    
    interface Ethernet0/6
    shutdown
    interface Ethernet0/7
    switchport access vlan 10
    interface Vlan1
    no nameif
    no security-level
    no ip address
    interface Vlan10
    nameif inside
    security-level 100
    ip address 192.168.250.1 255.255.255.0
    interface Vlan20
    nameif outside
    security-level 0
    ip address dhcp setroute
    ftp mode passive
    dns domain-lookup inside
    dns domain-lookup outside
    pager lines 24
    mtu inside 1500
    mtu outside 1500
    ip local pool VPN_Pool 192.168.250.100-192.168.250.101 mask 255.255.255.0
    icmp unreachable rate-limit 1 burst-size 1
    no asdm history enable
    arp timeout 14400
    global (outside) 10 interface
    nat (inside) 10 192.168.250.0 255.255.255.0
    timeout xlate 3:00:00
    timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
    timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
    timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
    timeout tcp-proxy-reassembly 0:01:00
    timeout floating-conn 0:00:00
    dynamic-access-policy-record DfltAccessPolicy
    aaa authentication ssh console LOCAL
    http server enable
    http 192.168.250.0 255.255.255.0 inside
    no snmp-server location
    no snmp-server contact
    snmp-server enable traps snmp authentication linkup linkdown coldstart
    crypto ipsec security-association lifetime seconds 28800
    crypto ipsec security-association lifetime kilobytes 4608000
    telnet timeout 5
    ssh 192.168.250.0 255.255.255.0 inside
    ssh timeout 5
    ssh version 2
    console timeout 0
    dhcpd dns 8.8.8.8
    dhcpd address 192.168.250.20-192.168.250.50 inside
    dhcpd enable inside
    threat-detection basic-threat
    threat-detection statistics access-list
    no threat-detection statistics tcp-intercept
    webvpn
    enable outside
    svc image disk0:/anyconnect-win-2.5.2014-k9.pkg 1
    svc image disk0:/anyconnect-macosx-i386-2.5.2014-k9.pkg 2
    svc image disk0:/anyconnect-linux-2.5.2014-k9.pkg 3
    svc enable
    tunnel-group-list enable
    group-policy DfltGrpPolicy attributes
    dns-server value 8.8.8.8
    vpn-tunnel-protocol IPSec l2tp-ipsec svc webvpn
    tunnel-group AnyConnect type remote-access
    tunnel-group AnyConnect general-attributes
    address-pool VPN_Pool
    tunnel-group AnyConnect webvpn-attributes
    group-alias AnyConnect enable
    class-map inspection_default
    match default-inspection-traffic
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum client auto
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect ftp
      inspect h323 h225
      inspect h323 ras
      inspect ip-options
      inspect netbios
      inspect rsh
      inspect rtsp
      inspect skinny 
      inspect esmtp
      inspect sqlnet
      inspect sunrpc
      inspect tftp
      inspect sip 
      inspect xdmcp
    service-policy global_policy global
    prompt hostname context
    no call-home reporting anonymous
    call-home
    profile CiscoTAC-1
      no active
      destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
      destination address email [email protected]
      destination transport-method http
      subscribe-to-alert-group diagnostic
      subscribe-to-alert-group environment
      subscribe-to-alert-group inventory periodic monthly
      subscribe-to-alert-group configuration periodic monthly
      subscribe-to-alert-group telemetry periodic daily
    Cryptochecksum:30fadff4b400e42e73e17167828e046f
    : end

    Hello,
    I seem to be having the same kind of issue although I cannot ping from either end.
    Ive set up a l2tp/ipsec vpn which I am able to connect to and get ip from my ip pool (radius authentication is working).
    I tried running:
    access-list NAT_0 permit ip 192.168.1.0 255.255.255.0 192.168.2.0 255.255.255.0
    nat (inside) 0 access-list NAT_0
    but i get an error msg saying that the syntax of the nat command is deprecated. Im running ASA version 8.4.
    Ive fiddled around abit to find the correct syntax but have been unsuccessfull so far.
    Any help would be much appreciated
    This is a part of my config:
    object network obj_any
    subnet 0.0.0.0 0.0.0.0
    object network AD1
    host 192.168.1.31
    description AD/RADIUS
    object network NETWORK_OBJ_192.168.1.0_24
    subnet 192.168.1.0 255.255.255.0
    object network vpn_hosts
    subnet 192.168.2.0 255.255.255.0
    access-list AD_splitTunnelAcl standard permit 192.168.1.0 255.255.255.0
    access-list split-acl standard permit 192.168.1.0 255.255.255.0
    access-list inside_nat0_outbound extended permit ip any 192.168.1.0 255.255.255.0
    access-list inside_0_outbound extended permit ip object NETWORK_OBJ_192.168.1.0_24 object vpn_hosts
    ip local pool POOL2 192.168.2.2-192.168.2.10 mask 255.255.255.0
    nat (inside,outside) source static any any destination static NETWORK_OBJ_192.168.1.0_25 NETWORK_OBJ_192.168.1.0_25 no-proxy-arp route-lookup
    nat (inside,outside) source static NETWORK_OBJ_192.168.1.0_24 NETWORK_OBJ_192.168.1.0_24 destination static NETWORK_OBJ_192.168.1.0_25 NETWORK_OBJ_192.168.1.0_25 no-proxy-arp route-lookup
    nat (inside,outside) source static NETWORK_OBJ_192.168.1.0_24 NETWORK_OBJ_192.168.1.0_24 destination static vpn_hosts vpn_hosts
    object network obj_any
    nat (inside,outside) dynamic interface
    access-group outside_access_in in interface outside
    route outside 0.0.0.0 0.0.0.0 ########## 1
    no vpn-addr-assign aaa
    no vpn-addr-assign dhcp

  • The airport on my Time Capsule will now only allow one device to connect at a time.

    When I first installed my new time capsule, everything worked beautifully. I had multiple devices connected to the AirPort and life was good.
    A few weeks ago, I swapped my cable modem and everything went bad from there. Now I can only connect one device wirelessly at a time.
    After lots of back and forth with Time Warner, a swap of the modem and may hours with tech support, it has been determined that my Time capsule is not assigning the 2nd, 3rd... devices a proper IP address. Instead, the IP addresses all begin with 169.
    What advice do you have. Is there a way to reset the whole darn thing? At this point, I am okay if I lose all of my backups.
    Thanks!

    What is the cable modem?? Make and model please.
    What model is your TC.. A1xxx from the base please??
    I suspect the issue is the TC is bridged and you have a pure modem.. you need to change it over to router mode..
    Here is what you need to do to setup the TC..
    The list is over long perhaps but is based on best network practice for Yosemite which is rather more than problematic.
    You don't say what OS you are running.
    Once you do this.. you also need to power down the modem if it is pure modem type (which is all that makes sense here). Leave it off for 20min while you do the setup of the TC and then power up the modem wait a couple of min and power up the TC..
    Expect serious issues if the modem is SB something.. 6121 or 6141 for example. And your TC is AC model.
    Start from a factory reset. No files are lost on the hard disk doing this.
    Factory reset universal
    Power off the TC.. ie pull the power cord or power off at the wall.. wait 10sec.. hold in the reset button.. be gentle.. power on again still holding in reset.. and keep holding it in for another 10sec. You may need some help as it is hard to both hold in reset and apply power. It will show success by rapidly blinking the front led. Release the reset.. and wait a couple of min for the TC to reset and come back with factory settings. If the front LED doesn’t blink rapidly you missed it and simply try again. The reset is fairly fragile in these.. press it so you feel it just click and no more.. I have seen people bend the lever or even break it. I use a toothpick as tool.
    N.B. None of your files on the hard disk of the TC are deleted.. this simply clears out the router settings of the TC.
    Setup the TC again.
    Then redo the setup from the computer with Yosemite.
    1. Use very short names.. NOT APPLE RECOMMENDED names. No spaces and pure alphanumerics.
    eg TCgen5 for basestation and and TCwifi wireless name.
    If the issue is wireless use TC24ghz and TC5ghz with fixed channels as this also seems to help stop the nonsense. But this can be tried in the second round. ie plan on a first and second round of changes to fix this.. hopefully.. I will point out other steps that can be round2.
    2. Use all passwords that also comply with 1. but can be a bit longer. ie 8-20 characters mixed case and numbers.. no non-alphanumerics.
    3. If the TC is main router you can skip this point. This is only an issue when the TC is bridged.
    Ensure the TC always takes the same IP address.. you will need to do this on the main router using dhcp reservation.. or a bit more complex setup using static IP in the TC. But this is important.. having IP drift all over the place when Yosemite cannot remember its own name for 5 min after a reboot makes for poor networking.
    4. Check your share name on the computer is not changing.. make sure it also complies with the above.. short no spaces and pure alphanumeric.. but this change will mess up your TM backup.. so be prepared to do a new full backup. Sorry.. keep this one for second round if you want to avoid a new backup.
    5. Mount the TC disk in the computer manually.
    In Finder, Go, Connect to server from the top menu,
    Type in SMB://192.168.0.254 (or whatever the TC ip is which you have now made static. As a router by default it is 10.0.1.1 and I encourage people to stick with that unless you know what you are doing).
    You can use name.. SMB://TCgen5.local where you replace TCgen5 with your TC name.. local is the default domain of the TC and doesn't change.
    However names are not so easy as IP address.. nor as reliable. At least not in Yosemite they aren't. The domain can also be an issue if you are not plugged or wireless directly to the TC.
    6. Make sure IPv6 is set to link-local only in the computer. For example wireless open the network preferences, wireless and advanced / TCP/IP.. and fix the IPv6. to link-local only. Do the same for ethernet if you use it.
    There is a lot more jiggery pokery you can try but the above is a good start.. if you find it still unreliable.. don't be surprised.
    You might need to do some more work on the computer itself. eg Reset the PRAM.. has helped some people. Clean install of the OS is also helpful if you upgrade installed.
    Tell us how you go.
    Someone posted a solution.. See this thread.
    Macbook can't find Time Capsule anymore
    Start from the bottom and work up.. I have a list of good network practice changes but I have avoided Yosemites bug heaven.
    Yosemite has serious DNS bug in the networking application.. here is the lets say more arcane method of fixing it by doing a network transplant from mavericks.
    http://arstechnica.com/apple/2015/01/why-dns-in-os-x-10-10-is-broken-and-what-yo u-can-do-to-fix-it/

  • Time Capsule firmware upgrade interfering with VPN connection?

    I regularly connect to our corporate VPN with my (corporate, non-Apple) laptop through wi-fi through our Time Capsule.  I think that the recent firmware upgrade to the Time Capsule has made it impossible for me to connect to the VPN.  My IT department suggests that the upgrade may have tightened a security setting that is preventing the VPN connection.  Is this something others have experienced?  Is there anything to do about it?  (At the moment, I am connecting to the VPN through my iPhone as a hotspot, but I'll use up my data allowance if I keep doing that.)

    Yes, it is common.. Apple only bother to check their software requirements.. not everybody elses.
    VPN in particular seems to suffer from being killed off on about every second firmware revision. Woopss forget about that..
    Is there anything to do about it? 
    Absolutely.. take your TC back to the last firmware that worked.. a Gen1 I would strongly recommend 7.5.2 but 7.6.1 is not bad.. avoid the rest.
    Downgrade firmware is easy in v6 utiity.
    Click on the version number with the option key held down.. lo and behold.. all the old versions will appear .. pick a goodun and it will proceed to downgrade that is an upgrade in functionality.. at least as far as your VPN is concerned.. very little else is going to be affected.
    V6 utility does allow you to turn off checking for updates .. I just found it.
    On the top menu area open preferences for airport utility..
    Uncheck the first two items.. check for updates and check for updates weekly.
    Do not even dream that this will stop it complaining about updates.. because it will still manage to complain.. but less often.. and you MUST ignore it.. for your own good.
    Are you sure your port forwarding is still functional and is the laptop or whatever you are using getting the right IP. If IP changes the VPN will no longer work.. but I think port forwarding has become more problematic as v6 utility has made it harder.
    Sometimes as part of this process you should also factory reset.. old firmware or new firmware and redo the port forwards again.
    It is also much easier to simply use a router that understands vpn.
    https://discussions.apple.com/message/22978735#22978735

  • OEL 5 - Cisco VPN connects proper, then in a few minutes times out

    Issue
    I installed the latest Linux Cisco VPN (e.g. on Oracle Enterprise linux)
    Error
    I get this-->
    [user@localhost ~]$ vpnclient connect xyz
    Cisco Systems VPN Client Version 4.8.01 (0640)
    Copyright (C) 1998-2007 Cisco Systems, Inc. All Rights Reserved.
    Client Type(s): Linux
    Running on: Linux 2.6.18-164.el5xen #1 SMP Thu Sep 3 02:41:56 EDT 2009 i686
    Config file directory: /etc/opt/cisco-vpnclient
    Initializing the VPN connection.
    Contacting the gateway at xxx.xx.xxx.xxx
    Contacting the gateway at xxx.xx.xxx.xxx (balancing)
    User Authentication for xyz...
    Enter Username and Password.
    Username [xyz]:
    Password []:
    Authenticating user.
    Negotiating security policies.
    Securing communication channel.
    Your VPN connection is secure.
    VPN tunnel information.
    Client address: xxx.xxx.xxx.xxx
    Server address: xxx.xx.xxx.xxx
    Encryption: 168-bit 3-DES
    Authentication: HMAC-SHA
    IP Compression: None
    NAT passthrough is active on port UDP 4500
    Local LAN Access is disabled
    Secure VPN Connection terminated locally by the Client
    Reason: Remote peer is no longer responding.
    Disconnecting the VPN connection.
    [user@localhost ~]$
    Questions
    Even when I drop the OEL 5 firewall -- the remote peer will still "no longer respond"
    Also, while the VPN is connected, browsers set to the proper proxy and mail do not connect and return data, etc...
    Then it just does this -->
    Secure VPN Connection terminated locally by the Client
    Reason: Remote peer is no longer responding.
    Any advise will be appreciated....
    Thanks.....
    Edited by: mheath on Dec 7, 2009 2:41 PM

    1) Note that I do understand that external mail will not work when connected to the vpn, only internal mail
    2) When the vpn is connected, the following should work and both "do not work":
    a) When pointing to the proper proxy, the browser should display "external pages like google" and internal pages..
    b) And, internal imap mail should work - it does not
    3) on a windows machine in the same exact subnet/network vpn works fine...?
    4) Also, I have had vpn working with ubuntu 9.1x just previously in the same exact subnet/network!
    5) ==> Something is not letting the vpn communicate "after" it is connected on the OEL 5 server ?
    Thanks...

  • Dual Remote VPN Connection

    Hello Guys
    i created three different Remote VPN connections with three different networks . i can make them one but for some reasons i don't mix all.
    and iam using  Cisco asa 5505 with Shrew Soft VPN software , so my problem is
    - i connected Shrew soft remote vpn , if i try to connected another remote vpn connection this will not accept the second connection , so please can any one give me  a remote vpn connection software that accepts more than one connection

    Hi,
    Since you mention the ASA and the VPN I presume you are trying to connect by VPN Client to the same ASA?
    Why would you want to have several VPN client connections at the same time? (Though I think that isnt even possible)
    What are you trying to accomplish by these 3 different VPN Client configurations configured on the same ASA?
    Isnt it just possible to configure one VPN Client connection to the ASA that would handle all the traffic of these 3 VPN Client connections?
    - Jouni

Maybe you are looking for