RV042 not annoucing vpn routes over rip v2

Problem: RV042 is not announcing a class C VPN route via RIP to other routers. It announces the gateway public address via rip, but not the VPN route.
I am attempting to use a pair of RV042 as a redundant links between our home office and a branch. The home office and branch is already connected via a T1. Each location also has an additional cable internet connection with public IP address and a cisco 1921 router controlling the traffic.
The 1921 routers are using OSPF to route traffic over the T1 and have RIPv2 enabled to talk to their local respective RV042s. Here is a description of how the network is set up.
MainRouter - cisco 1921
   Eth0 - Network is 192.168.41.0/24
             IP address is 192.168.41.20
   Eth0/1 - Network 10.1.1.1 255.255.255.254
            T1 connection to branch router
MainRV - RV042 v3 with fw 4.2.1.02
   Wan1 - Public IP A X.X.X.X
    LAN- Network 192.168.41.0/24
              IP 192.168.41.11 255.255.255.0
BranchRouter - cisco 1921
  Eth0/0 - Network is 192.168.46.0/24
               IP address is 192.168.46.10
  Eth0/1 - Network 10.1.1.2 255.255.255.254
            T1 connection to main router
BranchRV - RV042 v3 with fw 4.2.1.02
  Wan1 - Public IP B Y.Y.Y.Y
    LAN - Network 192.168.46.0/24
              IP 192.168.46.11 255.255.255.0
I have established a VPN from BranchRV to MainRV and it passes traffic correctly. My "MainRouter "
rip database looks like this....
192.168.41.0/24    auto-summary
192.168.41.0/24    directly connected, GigabitEthernet0/0
X.X.X.X/24    auto-summary
X.X.X.Z/30
    [1] via 192.168.46.11, 00:00:01, GigabitEthernet0/0
Notice that there is no route to 192.168.46.0/24 in there....
Now here is the kicker, just messing around, I changed the VPN settings to use subnets 10.0.10.0/24 on MainRV and 10.0.11.0/24 on BranchRV instead of 192.168.41.0/24 and 192.168.46.0/24 respectivly. After I tried that the routes for the 10.0.3.0 were announced via RIP
Here is what the MainRouter's rip database looked like after I tried that
10.0.0.0/8    auto-summary
10.0.11.0/24
    [2] via 192.168.41.11, 00:00:18, GigabitEthernet0/0
192.168.41.0/24    auto-summary
192.168.41.0/24    directly connected, GigabitEthernet0/0
X.X.X.X/24    auto-summary
X.X.X.Y/30
    [1] via 192.168.41.11, 00:00:18, GigabitEthernet0/0
What gives? This really looks like a bug to me...
Anyhow I'm thinking a workaround might be to set up a GRE tunnel across those 10.0.X.X subnets to the other side so I can at least dynamically route traffic accross.... Without the RIP routes being announced I don't have automatic failover!
Thanks for your help,
   Curtis

Yes as was explained to me previously.... by Jason Nickle multicast does not cross a site-to-site tunnel.
That is not what I want to have happen. What I want is for my RV042 to announce it's VPN routes to other routers on the same physical network. Which it currently is not doing.
Site 1
    Cisco IOS Router X - main router, local network traffic runs across this
     RVO42 X - has VPN link to RVO42 Y at Site 2
Site 2
  Cisco IOS Router Y - main router, local newtok traffic runs acress this
   RVO42 Y - has VPN link to RVO42 X at Site 1
The problem is that RV042 Y doesn't tell Router Y that it has a route to Site 1. And RV042 X doesn't tell Router X that it has a route to Site 2. So they are not locally announcing via RIP, the routes they have TO the respective remote sites.
What I was trying to say in my original post, is that the router will announce VPN routes if the vpn subnets are a class A 10.X.X.X subnet, but it doesn't announce them if they are a class C 192.168.X.X subnet. So what I am doing should be working, however it is not.

Similar Messages

  • Quickvpn / client to gateway vpn rv042 can only ping router

    I am setting up remote access using an RV042 router.  Using quickvpn or a client-to gateway vpn and shrewsoft client,  I can only access/ping the LAN side of the remote router and one machine on the remote network.  The PPTP server and native Windows 7 connection provide access to all machines on the remote network.
    I have 2 possible reasons for this and would like to find the real reason:
    1) The remote RV042 is behind another router, and that router restricts access other than the PPTP traffic.
    2)  The VPN tunnels other than PPTP only allow access to the remote LAN side of the router and remote machines that have the remote router defined as their gateway in the IP configuration.
    Any ideas?

    I've narrowed the problem down to option 2 above. If I change the gateway of a LAN resource to point to the LAN side of the router, it can be accessed through the VPN tunnel. 
    I haven't had time to see if adding routing entries can fix this problem.  Any suggestions will be appreciated.
    Also, I would appreciate an explanation of why the PPTP connection works.  I will research this myself (eventually) but am  already backed up with other projects..

  • Discover Switch and router over VPN

    i am in contact with a company having many branches connecting over VPN tunnel and with different IP range in each branch
    how can i configure the LMs to discover my switch and my router over VPN

    LMS 3.0.1 and higher can use non-CDP discovery methods which should be able to find your remotely connected VPN devices.  You could use the Ping Sweep or Route Table modules to accomplish what you want.
    See https://supportforums.cisco.com/docs/DOC-9005 for more details.

  • How to access Time Capsule drives behind DSL Router over WAN

    Hello everyone,
    I have an older Time capsule(with USB Drive) connected to my Hitron CGN3 DSL wireless router over ethernet. 
    I have turned off the wireless functionality of the TC since the router seems to be much faster on Speedtest.net. 
    I have my TC and attached USB drive setup to share over WAN but am getting a Double NAT error.
    It doesn't seem like I can turn off NAT on my Router.
    I can't run the TC in bridge mode because it will remove the Share over WAN option for the TC and Drive.
    Is it possible to setup the TC and attached USB drive to the router, without wireless on, so that I can access the TC and drive over the internet?
    Any help would be soooooo apreciated!!!
    Thanks!
    Ian

    Does anyone know why my Time Capsule drive sharing needs to be set to disk password?
    You can set the TC disks to user accounts.. at least you can on older TC with older airport utility.. but there are consequences which you discovered.
    If you set accounts.. you will have major issue with the existing files.. they will all disappear.
    The old v5 utility gives you this warning.. which somehow Apple forgot on new version.
    It actually makes all the present files disappear for all users. The warning just doesn't go far enough. You do this on a blank TC.. and of course the USB drive is just the same.. you cannot use different settings on that to the TC internal drive. So offload all your files.. create accounts on a bare TC.. load the files back into the correct user profiles.
    In the end you probably want more flexibility than a TC is designed for.. buy something designed for remote access.. WD MyCloud.. it is hugely superior.
    Also. . .  I am trying some File manager apps for my iPhone in hopes that i can connect to the same drive with it.  So far no luck with the free versions of FileBrowser Lite or File Explorer Free.
    Most are SMB based.. not AFP.. Apple offer only two protocols.. SMB and AFP. But no responsible ISP allows SMB over the internet. The flood of files from hacked windows machines would bring the internet to a grinding halt.
    People do get around it.. you can use filebrowser for instance by opening SMB to the outside world on a non-standard port.
    See http://www.stratospherix.com/support/gsw_timecapsule.php?page=6remote
    But this is incredibly risky.. there is very poor security and it is not a great idea. The AFP security is much better than SMB.
    If you want security use something other than TC.. any real NAS that offers VPN access for instance. The cost of a WD MyCloud is very reasonable when you look at the flexibility of the design. But any decent NAS will offer real remote access.. not Apple's limited pretend version.

  • QuickVPN and RV042 not verifying network

    I installed an RV042 this weekend at my home office that has dual DSL connections.  The unit works great except now I am offsite and I cannot get to the VPN.  The frustrating thing is that the quickVPN CONNECTS it just does not verify the connection via the remote ping.
    2009/06/08 08:48:19 [STATUS]OS Version: Windows XP
    2009/06/08 08:48:19 [STATUS]Windows Firewall is OFF
    2009/06/08 08:48:19 [STATUS]One network interface detected with IP address 10.15.25.xxx
    2009/06/08 08:48:19 [STATUS]Connecting...
    2009/06/08 08:48:26 [STATUS]Remote gateway was reached by https ...
    2009/06/08 08:48:26 [STATUS]Provisioning...
    2009/06/08 08:48:33 [STATUS]Tunnel is connected successfully.
    2009/06/08 08:48:33 [STATUS]Verifying Network...
    2009/06/08 08:48:37 [WARNING]Failed to ping the remote VPN Router!
    2009/06/08 08:48:38 [WARNING]Failed to ping the remote VPN Router!
    2009/06/08 08:48:39 [WARNING]Failed to ping the remote VPN Router!
    2009/06/08 08:48:40 [WARNING]Failed to ping the remote VPN Router!
    2009/06/08 08:48:41 [WARNING]Failed to ping the remote VPN Router!
    2009/06/08 08:48:42 [WARNING]Ping was blocked, which can be caused by an unexpected disconnect.
    As you can see the windows firewall is off, I have a 10.15.25 address on the client side, (The VPV side is 192.168.100.xxx).  So the tunnel connects okay but the network verification fails.  SO this means that 443 from where I am is open.  Of course who would block 443 anyhow?  Is there an access rule that needs to be created to allow ping to the local address of the router or something?  If so that is not in the documentation anywhere.  Help please?

    David,
    This is definitely *not* resolved, and I am having the exact same problem with an RV042 (firmware version 1.3.12.19-tm) from a WIndows 7 Ultimate (v6.1.7100) platform.
    All of the ports on the RV042 are fully available from the internet.  Here is an nmap scan of the entire RV042:
    C:\Users\markm>nmap 173.13.184.201
    Starting Nmap 5.00 ( http://nmap.org ) at 2010-02-10 22:12 Pacific Standard Time
    Interesting ports on 173-13-184-201-sfba.hfc.comcastbusiness.net (173.13.184.201
    Not shown: 995 filtered ports
    PORT      STATE  SERVICE
    80/tcp    open   http
    113/tcp   closed auth
    443/tcp   open   https
    1723/tcp  open   pptp
    60443/tcp open   unknown
    Here's the screen shot of QuickVPN (not much to tweak):
    When try and connect, it get's all the way through everything, but hangs on "Verifying network..."  This is the classic "can't ping the server" problem...  FWIW, I inserted a copy of my QuickVPN logfile at the end of this post.
    I see a lot of guys trying crazy stuff, but no answers, or even suggestions that seem to understand the problem.  Maybe I should turn this around a little...
    Has *anyone* successfully connected using QuickVPN under Windows?  If so, can you please describe your configuration?  I suspect this tool worked once in '98, and Linsys/Cisco still thinks it works. 
      As best I can tell, the tool simply hasn't worked since at least WinXP, maybe Win2K.
    Helllllllllllllllllllllllllllllllllllllp!
    -Mark
    Log file after unsuccessful connection attempt (with 2 retries):
    2010/02/10 21:54:55 [STATUS]OS Version: Windows XP
    2010/02/10 21:54:55 [STATUS]Windows Firewall is ON
    2010/02/10 21:54:55 [STATUS]One network interface detected with IP address 10.69.1.100
    2010/02/10 21:54:55 [STATUS]Connecting...
    2010/02/10 21:54:55 [STATUS]Connecting to remote gateway with IP address: 173.13.184.201
    2010/02/10 21:55:00 [STATUS]Remote gateway was reached by https ...
    2010/02/10 21:55:00 [STATUS]Provisioning...
    2010/02/10 21:55:04 [STATUS]Tunnel is configured. Ping test is about to start.
    2010/02/10 21:55:04 [STATUS]Verifying Network...
    2010/02/10 21:55:10 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:13 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:16 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:19 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:22 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:25 [WARNING]Ping was blocked, which can be caused by an unexpected disconnect.
    2010/02/10 21:55:33 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:34 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:35 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:36 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:37 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:38 [WARNING]Ping was blocked, which can be caused by an unexpected disconnect.
    2010/02/10 21:55:46 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:49 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:52 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:55 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:55:58 [WARNING]Failed to ping the LAN IP of the remote VPN Router!
    2010/02/10 21:56:01 [WARNING]Ping was blocked, which can be caused by an unexpected disconnect.
    2010/02/10 21:56:05 [STATUS]Disconnecting...
    2010/02/10 21:56:13 [STATUS]Tunnel is disconnected successfully.

  • Airport not distributing DNS servers over network

    Hi everyone,
    I connect to the Internet over ADSL (ISP: Arnet Highway, Buenos Aires, Argentina) using PPPoE from my MacBook Pro.
    I have my ADSL modem connected to the Airport Extreme (802.11n) and distributing IP over DHCP just fine. Every device that joins the network obtains a valid IP.
    However, DNS servers aren't distributed by the router over the network. Every connected device has to be manually configured to set the DNS servers of my ISP to be able to resolve hosts, instead of 'asking' these addresses to the router, as it should be.
    Initially I thought there might be a problem obtainig the DNS servers from the ISP. So in the Airport Utility, in Internet / PPPoE settings, I've manually set my ISP's DNS servers, which should be distributed over the network to all connected devices.
    This doesn't happen, and every somebody new joins my wireless network I have to manually change the DNS servers for that connection which, as I'm sure you'll agree with me, can be quite annoying. Not to mention what would happen if my ISP decides to use dynamic DNS addresses.
    Thanks for any help you might provide.
    Cheers.

    Hello belbo,
    I connect to the Internet over ADSL using PPPoE from my MacBook Pro.
    Is your Macbook Pro Network configured to use PPPoE or DHCP?
    I have my ADSL modem connected to the Airport Extreme (802.11n) and distributing IP over DHCP just fine. Every device that joins the network obtains a valid IP.
    Is NAT enabled on the AE? Are the valid IP Address obtained from your ISP or from the AE?
    However, DNS servers aren't distributed by the router over the network. Every connected device has to be manually configured to set the DNS servers of my ISP to be able to resolve hosts, instead of 'asking' these addresses to the router, as it should be.
    When you setup the AE to use PPPoE did you enter a Domain Name or a DHCP Client ID?
    Initially I thought there might be a problem obtainig the DNS servers from the ISP. So in the Airport Utility, in Internet / PPPoE settings, I've manually set my ISP's DNS servers, which should be distributed over the network to all connected devices.
    The DNS servers listed in the AE aren't distributed to each Network Device but are only used to translate names into IP addresses when need by a Network Device.
    This doesn't happen, and every somebody new joins my wireless network I have to manually change the DNS servers for that connection which, as I'm sure you'll agree with me, can be quite annoying. Not to mention what would happen if my ISP decides to use dynamic DNS addresses.
    If your AE is distributing IP Address using DHCP and NAT then this should not be a problem but I'm not sure without more information about the questions I asked.
    Later.
    Buzz

  • Airport Express will not allow any downloads over the network, why is this and what can I do to fix it?

    I own an Apple Airport Express station. I am attending the University of North Carolina at Chapel Hill and the airport is hooked into the network via ethernet cord. While the first few months of operation have gone smoothly for this router, over the last few weeks any and all downloads have failed to complete over the airport. I moved outside and used the official University's wifi and the downloads worked, meaning it's not a UNC network problem (to my knowledge). All file types affected include song downloads through iTunes, app downloads on my iPhone, software downloads like Google Chrome, Finale, Microsoft Word updates, etc. I have tried this on both my Lenovo with Windows 7 and my Macbook Pro to troubleshoot hardware problems and it doesn't work on either of them. I have restored the router to factory settings twice now and still it does not work. Sorry for the length of this, just wanted to pass along as much info as I could.

    The fact that you can access all downloads while the AirPort Express Base Station (AX) is not directly attached to the University's network indicates that the University's IT department may not allow downstream routers connected to their network without first registering it with them. This is often the case, and it is not uncommon that most universities do not allow you to do so in the first place. I would suggest that you start by contacting your IT department to see if this is allowed, and if so, they should be able to assist you with the proper configuration of your AX.

  • Unable to access LAN behind RV042 from QUICK VPN Client once it connects

    Hi,
    Very recently, we had implemented Site-to-Site VPN tunnel between two Linksys RV042 4-port VPN routers. Everybody in our remote site is accessing and sharing the data through this tunnel and it is working fine.
    Now, we have a plan to implement the same for our mobile clients also. For this, we had followed all the basic configuration procedures and user got connected to Quick VPN tunnel. Here is a problem we had observed. The mobile client user is connected to the tunnel, but unable to access the office LAN from the PC.
    What's the problem in configuration? What i have to do?
    Thanks
    VC Gundapaneni

    Hi There.
    have a look over here.
    http://www.linksysinfo.org/index.php?threads/netbios-issues-with-vpn.16170/

  • How to make a VPN route permanent ?

    I have a VPN between my office and a lab on the east coast and I can use the following command from my Terminal to enable the route in my Leopard Server:
    route add -net 10.48.239.0 -netmask 255.255.255.0 192.168.1.254
    How can I make this a permanent route? At this time if I reboot the server I must get into the Terminal and use the following two lines to make everything work again:
    sudo su
    route add -net 10.48.239.0 -netmask 255.255.255.0 192.168.1.254
    Thanks for any information any of you may have.
    By the way within 6 months I will be doing the same task on a new Snow Leopard Server so if there are differences please feel free to chime in.

    If you're having to manually set VPN routes then you're doing something wrong.
    It isn't clear from your post where you're doing this. You say you set this 'in my Leopard Server', but it's not clear whether that server is the VPN server on the east coast, a server in your office, or another server anywhere else.
    Normally, the VPN server sends out a list of routes the client should use, so knowing the above will help narrow down where your problem lies.

  • Internet stops with PPTP VPN connections to ASUS RT-N66U VPN Router

    I have a client with a small office network that has a few people working remotely from Windows 7 and 8 PCs. As an inexpensive solution the client opted to use a VPN router (ASUS RT-N66U) that supports PPTP so remote users could access the shared
    files and SQL DB server. 
    The VPN connectivity for one client was working fine and then stopped working altogether so when the VPN connection is established all Internet and VPN access is stopped. This was especially troubling for me since I work remotely and cannot test or debug after
    the VPN session has been connected. I checked the error logs and found nothing. Also there had been no new programs installed. And finally, I ran a full system antivirus scan with no issues found.
    In case you are facing a similar issue, before trying something remotely that may not work, use the shutdown with reboot command in a COMMAND window and set a timer for something like 3 minutes to reboot in case you get stuck. (e.g. shutdown -r -t 180). 
    Problem: The two symptoms of the VPN connection failure are:
    1) All Internet browsing stops working locally 
    2) No data can pass through the VPN tunnel
    I created a virtual machine on my local network and replicated the client's environment. I experimented with nearly every setting in the VPN dialogue until and came to the final solution. 
    Solution: For the VPN adapter on the remote machines I configured DNS settings and used the remote as the default gateway.
    * VPN adapter Networking IPV4 Properties for:
    - DNS server 1: Main Office VPN Router IP Address
    - DNS server 2: A public DNS server (Google is 8.8.8.8)
    - I also checked the box to "register this connection addresses in DNS"
    Note: Perhaps the local router would also have worked and DNS2 but I didn't test it.
    I have documented this because after reading and searching among many Technical articles and the Microsoft support website, I was unable to find the solution that I came up with so I hope to help someone else. 
    Question1: - Can anyone tell me why the connectivity only works when 'use default gateway on remote network' is checked?
    - I have disabled this option with some business class VPN routers and the connectivity still worked to the remote network but it does not work to the Asus router.
    Question2: From the information provided can I determine where the problem lies?
    Is it the:
    1) Remote client PC
    2) Remote client router
    3) Home office VPN router (Asus RT-N66U)
    If the true culprit cannot be determined yet, what steps do you recommend so I can isolate the true cause of the failure.
    I appreciate any help so that I can be sure my solution is valid and pass along the findings to ASUS if it is their issue.

    Thank you for the suggestion. I have successfully connected through the VPN router when the one client was unable to get VPN throughput working.
    I looked at the routing tables with and without the VPN connection established. The differences are that:
    1) when VPN is NOT active, there is a route from the local NIC IP to the Internet IP address of the local gateway
    destination 68.109.82.xx
    mask 255.255.255.0
    gateway 192.168.0.1
    interface 192.168.0.11
    metric 21
    2) when VPN IS active, the route to the Internet IP address of the local gateway is deleted and a persistent route to the VPN router local network has been added
    Persistent route:
    destination 192.168.21.0
    mask 255.255.255.0
    gateway 192.168.0.1
    interface 192.168.0.11
    metric 1

  • Why VPLS and not L3 VPNs ???

    Hi all
    Please bare with me, i know a lot has been written about what VPLS is, I have read the postings, but maybe someone can in simple terms answer my qn for me;
    Why should one go for VPLS and not L3 VPNs or L3 VPNs and not VPLS, i need arguments from both the enterprise point and the ISP point
    Hope you get my Question
    Regards
    MM

    Well..
    VPLS:
    +No need to involve the ISP for routing issues
    +Support non-IP protocols - IPX, AppleTalk etc..
    -Difficult to troubleshoot
    -Possible to make a L2-loop
    -Customers could overflow mac-tables.
    L3-VPN:
    +ISP control the routing process - or the customer could control the CE-PE, and control it's own routing.
    +Loops are avoided with routing-protocols
    -Non-IP protocols have to be encapsulated to work
    Personally I liked the VPLS best before, but after choosing an ISP supporting PE-CE-protocols, not using static's and has a good support centre, I always recommend L3VPN's.
    Also within our own MPLS-network we always use L3. (with no 7600's VPLS is not supported...) EoMPLS is not used permanently used within out MPLS, but could be used for moving a customer from one datacenter to another, or other special timelimited purpose...
    L@rs

  • What is the preferred dynamic routing over l2l/ipsec?

    what is the preferred dynamic routing over l2l/ipsec?
    Sent from Cisco Technical Support iPhone App

    Disclaimer
    The  Author of this posting offers the information contained within this  posting without consideration and with the reader's understanding that  there's no implied or expressed suitability or fitness for any purpose.  Information provided is for informational purposes only and should not  be construed as rendering professional advice of any kind. Usage of this  posting's information is solely at reader's own risk.
    Liability Disclaimer
    In  no event shall Author be liable for any damages whatsoever (including,  without limitation, damages for loss of use, data or profit) arising out  of the use or inability to use the posting's information even if Author  has been advised of the possibility of such damage.
    Posting
    Pretty much what you might use if not IPSec.
    Do you have some reason why IPSec should have a preferred routing protocol or are you just wondering if there is a preferred routing protocol for IPSec?

  • RV082 loses all vpn connections over night

    I have a RV082 vpn router with 20 VPN connections permasnently deployed.  I am using 1.3.98 tm firmware (latest)  After long periods of inactivity (overnight)
    the VPN cease to function  there is no indication of a problem. The tunnels are showing active in the VPN summary screen.  If I restart the router from the management  page the tunnels are restored.

    OK.   Next, lets check the other side of the tunnel.  Which product is that?  Are Keep alives and DPD enabled there?
    Also, lets look in the LOG file of the RV082 and see what it says.   Should show the tunnel trying to reconnect after it failed and may give us hints.
    Here is an RV082 bringing up a tunnel (as an example for reference).
    Jun 4 05:26:17 2009    VPN Log   initiating Quick Mode PSK+ENCRYPT+TUNNEL+PFS to replace #5453 Jun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] >>> Initiator send Quick Mode 1st packetJun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] <<< Initiator Received Quick Mode 2nd packetJun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] Inbound SPI value = ddfeccbJun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] Outbound SPI value = d866cd5bJun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] >>> Initiator Send Quick Mode 3rd packetJun 4 05:26:17 2009    VPN Log   [Tunnel Negotiation Info] Quick Mode Phase 2 SA Established, IPSec Tunnel ConnectedJun 4 05:26:17 2009    VPN Log   Dead Peer Detection Start, DPD delay timer=10 sec timeout=10 secJun 4 05:26:17 2009    VPN Log   ignoring Delete SA payload: IPSEC SA not found (maybe expired)

  • RV042 with Windows VPN Server

    Hi!,
    how do I connect the RV042 with an Windows VPN Server,
    so that the PC's behind the RV042 get the external IP of the VPN and join the VPN-Server's Network.
    I did configure the Windows Server with this tutorial:
    http://blog.lan-tech.ca/2012/01/28/sbs-2011-essentials-configuring-vpn-access/
    I can connect from any device just fine, so the server is running properly. I just need to know how to connect the RV042 to this VPN.
    Kind Regards
    penpenpen

    Dear Customer,
    Thank you for reaching the Small Business Support Community.
    Please refer to the below document, I think it is what you are looking for;
    http://sbkb.cisco.com/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=2957
    Please do not  hesitate to reach me back if there is any further assistance I may help you with.
    Kind regards,
    Jeffrey Rodriguez S. .:|:.:|:.
    Cisco Customer Support Engineer
    *Please rate the Post so other will know when an answer has been found.

  • PIX 501 and Linksys VPN Router (WRV200)

    I have inherited a job where we have a Cisco PIX 501 firewall at one site, and Linksys WRV200 VPN Router on two other
    sites. I have been asked to connect these Linksys routers to the PIX firewall via VPN.
    I believe the Linksys vpn routers can only connect via IPSec VPN, so i am looking for help on configuring the PIX 501 to allow the linksys to connect with the following parameters, if possible.
    Key Exchange Method: Auto (IKE)
    Encryption: Auto, 3DES, AES128, AES192, AES256
    Authentication: MD5
    Pre-Shared Key: xxx
    PFS: Enabled/Disabled
    ISAKMP Key Lifetime: 28800
    IPSec Key Lifetime: 3600
    On the PIX i have the PDM installed and i have tried using the VPN Wizard to no avail.
    I chose the following settings when doing the VPN Wizard:
    Type of VPN: Remote Access VPN
    Interface: Outside
    Type of VPN Client Device used: Cisco VPN Client
    (can choose Cisco VPN 3000 Client, MS Windows Client using PPTP, MS Windows client using L2TP)
    VPN Client Group
    Group Name: RabyEstates
    Pre Shared Key: rabytest
    Extended Client Authentication: Disabled
    Address Pool
    Pool Name: VPN-LAN
    Range Start: 192.168.2.200
    Range End: 192.168.2.250
    DNS/WINS/Default Domain: None
    IKE Policy
    Encryption: 3DES
    Authentication: MD5
    DH Group: Group 2 (1024-bit)
    Transform Set
    Encryption: 3DES
    Authentication: MD5
    I have attached the VPN log from the Linksys VPN Router.
    This is the first time i've ever worked with PIX so i'm still trying to figure the thing out, but i'm confident with CCNA level networking.
    Thanks for your help!

    Hi again,
    I believe the pix has a 3des license because of the following parts of the "show version"
    Licensed Features:
    Failover: Disabled
    VPN-DES: Enabled
    VPN-3DES-AES: Enabled
    This PIX has a Restricted (R) license.
    I've tried reconnecting the VPN tunnel with debugging on the PIX and get the output as shown in the attached file "vpndebug.txt"
    As for the other show commands they give:
    pixfirewall# show crypto isakmp sa
    Total : 0
    Embryonic : 0
    dst src state pending created
    pixfirewall# show crypto ipsec sa
    interface: outside
    Crypto map tag: transam, local addr. 10.0.0.1
    local ident (addr/mask/prot/port): (192.168.1.0/255.255.255.0/0/0)
    remote ident (addr/mask/prot/port): (192.168.101.0/255.255.255.0/0/0)
    current_peer: 10.0.0.2:0
    PERMIT, flags={origin_is_acl,}
    #pkts encaps: 0, #pkts encrypt: 0, #pkts digest 0
    #pkts decaps: 0, #pkts decrypt: 0, #pkts verify 0
    #pkts compressed: 0, #pkts decompressed: 0
    #pkts not compressed: 0, #pkts compr. failed: 0, #pkts decompress failed: 0
    #send errors 0, #recv errors 0
    local crypto endpt.: 10.0.0.1, remote crypto endpt.: 10.0.0.2
    path mtu 1500, ipsec overhead 0, media mtu 1500
    current outbound spi: 0
    inbound esp sas:
    inbound ah sas:
    inbound pcp sas:
    outbound esp sas:
    outbound ah sas:
    outbound pcp sas:
    pixfirewall#
    Thanks again Daniel, i really appreciate your help on this matter.

Maybe you are looking for

  • How do I change my old apple ID to my new one on imessenger.

    How do I change my old apple ID to my new one on imessenger. Is asking me for my old password but it does not recognize it.  Imessenger still recognizes my old apple id but not the password. How do i switch it to my new apple id.

  • APEX4-How can I see the insert sql apex is creating to insert form into db?

    Hi, I've a table with around 78 columns and a form to submit the values. Till around 68 columns it was working fine, when I added another 10 fields and modified names of few other, on clicking Create or Apply it throws duplicate column name error. I'

  • 12.1 SPC Chart: Using Nelson rules instead of WECO?

    Hi, I want to apply the Nelson rules to the SPC chart instead of WECO?  How and where is that configured in 12.1?  (I believe it was a server level configuration in 11.5 but can't find it in 12.1 or the help). The 12.1 help just refers to how WECO ru

  • Printing problem - Lightroom 4

    I'm not able to print photos from lightroom 4 ver 4.4.1; using windows 8 with HP photosmart printer c310a. Printer software has been removed and reinstalled. Can print from all other s/w applications but not Lightroom. Any suggestions how to resolve

  • Lilbrary and Duplicated HTML Tags

    Hi, I have built libraries and templates. each library is viewed correctly in Design mode, but after all libraries are merged into a page, it is not displayed correctly. I have found there are so many duplicated <div> tags. Anyone has a solution? Tha