RV220W iPhone IPSec

Hi!
Are there any working configurations for ipsec with an iphone connecting to a rv220w? I don't want to set up an insecure pptp vpn...
If there aren't any working configurations, will there be iphone support in future firmware releases?
Best regards
Richard      

I would also love to be able to connect to my rv220w via ipsec with my mobile devices. I've been trying for a few days now and sadly it just doesn't seem possible to use ipsec with iphone or android.... or anything not Cisco QuickVPN client for that matter.

Similar Messages

  • IPHONE IPSEC = NETASQ

    Hi,
    I'm trying to configure an IPSEC tunnel from the Iphone to the Netasq Firewall.
    Do you know if it's possible?
    Thank you a lot for your help!
    Message was edited by: Siegfried76

    perhaps you have disabled NAT-traversal? Here is what it looks by default:
    asa# sh run all | i crypto isakmp nat-traversal
    crypto isakmp nat-traversal 20
    If your clients or your ASA is behind a NAT/PAT-instance, it has to be enabled.
    Don't stop after you've improved your network! Improve the world by lending money to the working poor:
    http://www.kiva.org/invitedby/karsteni

  • Iphone ipsec and monowall

    I been racking my brain, seaching google and try o wait over five days now with monowall form
    I would like to know ow to setup isec so iphone can connect to our monowall firewall

    The current stable release of m0n0wall (1.235 as of this writing) has a very limited IPSec implementation, which is designed for Point-to-Point VPN between two m0n0wall or other firewall devices. If you want IPSec for mobile clients you need to use the m0n0wall beta version (1.3x). If you are already using the beta version here is configuration documentation located here (http://doc.m0n0.ch/handbook/faq-muvpn.html)

  • IPhone IPSec problems

    Hello.
    The problem is: when I'm trying to connect it asks login/password, accepts them and then just drops. The on/off switch turns off. No error messages, nothing at all. Settings are correct for sure. I've tried on android and windows phone. All iOS devices have this trouble. iOS version is 6.0.1. What's the problem? Can you help me, please?

    Can you check if it is possible to grab any sort of logs from VPN client in the phone?
    Along with this please run debug crypto isakmp and ipsec from VPN server at the same. If this issue then try running debug crypto isakmp / ipsec 200.
    Regards,
    Anuj

  • Connecting an iPhone/iPad to RV220W's VPN

    Hi
    I am looking to purchase the RV220W router. I am interested to know if I can use the iPhone/iPad to create a VPN connection to this router.
    I have seen a lot of conflicting information about this so I am looking for a confirmation .
    Thanks,
    Alex

    Hello,
    Just to people with the same challange:
    I can confirm that it´s possible to connect with iOS (iPhone 4S iOS Version 6.0.1) to RV220W (Firmware 1.0.4.17)
    Steps on RV220W:
         1) Enable Remote Mangement (Administration-->Remotemanagement-->Remotemanagment enable
         2) Activate PPTP Server on RV220W (VPN-->IPSec-->VPN Users)
         3) Create User for PPTP Access (VPN-->IPSec-->VPN Users) Protocoll: "PPTP"
    Steps on iPhone
         1) Create new VPN Connection (Setting-->General-->VPN--> Add VPN Configuration
         2) Choose "PPTP"
              as "tekliu" above mentioned:
              RSA SecureID:OFF
              Encryption Level: AUTO
              Send All Traffic: ON
              Proxy: OFF

  • Cisco ASA 5505 site to site IPSec VPN with RV220W issue

    I have a ASA5505 connected to RV220W through IPSec VPN. When  using SMB to transfer large file, the ASA5505 will show error message:
    CTM ERROR: Invalid input parameters, ctm_get_scb_prot_stats:1561
    The error message from the debug crypto engine. When  the message show, the speed of the transfer will slow down quickly, and  even no data can be go through between ASA and the RV220W. But the IPSec  SA and the IKE SA is active, and can ping the inside network in both  site.
    Both ASA5505 and the RV220W has been updated the latest firmware. I have surf the Google but no such related issue found.
    Any suggestions on where to look would be much appreciated.
    Thanks in advance
    Terry

    Hi Ted thanks for your reply and information.
    The strange things happened in RV220W shows the IPSec sa is expired, but the ASA5505 IPSec and IKEv1 sa is active. Inside both site internal network can ping to other side, but cant transfer file through Windows SMB. It seems when I transfer over 4GBytes of file, it will start happening and required clear IPSec and IKEv1 sa so that the VPN tunnel will start up again.
    I am already surrander for this issue......

  • Windows 7 32 b ipsec client to RV220W error 789

    Hello,
    I try to connect to RV220W with windows 7 client but  I fail : error 789. I compare again and again pre shared key, but it doesn't change anything
    Is anybody connect to RV220W with IPsec client ?
    Thanks

    GF, this is not an ipsec vpn and it is not as secure. The only built-in window support will be PPTP in regards to connecting to the router.
    If you're looking for IPsec, you need to use quickvpn (free Cisco software) or a 3rd party software such as greenbow, shrewsoft, ipsecuritas, etc.
    -Tom
    Please rate helpful posts

  • How to configure Cisco ASA 5500 to work with the iPhone

    We have Cisco ASA 5510 (latest firmware version), and apparently, according to Cisco website it is compatible with new iPhone 3G's IPSec client:
    http://www.cisco.com/en/US/docs/security/vpnclient/cisco_vpnclient/iPhone/2.0/connectivity/guide/iphone.html
    We've setup our first iPhone properly. It connects fine to the network, shows VPN connection as active. Gets a private IP address. But does not let any traffic go to the internal network. We thought it might be DNS problem, but it cannot connect to Exchange server even when using IP address instead of DNS. No luck either.
    After checking ASA logs, we found that iPhone goes through Phase 1 authentication correctly. But then gives some kind of error, mentioning "Attribute 5".
    Has anybody been successful configuring ASA5500 series (in particular 5510) to be used with iPhone?
    I noticed that many people are having these problems.
    Please do not post to this topic if you have ANY OTHER Cisco device.
    Cisco specifies that iPhone is compatible only with Cisco ASA 5500 Security Appliances and PIX Firewalls. Neither Cisco IOS VPN routers nor the VPN 3000 Series Concentrators support the iPhone VPN capabilities.
    Let's keep this topic only for users of ASA 5500 series and PIX Firewalls.
    It would be extremely helpful for a large number of users if somebody posted a list of settings for ASA5500 or PIX firewall that DO work with iPhone 2.0
    Thank you!
    Oleg R

    We found the solution and a bug in Cisco firmware (seems to be a bug).
    First of all, thanks to our Chief Systems Architect Seb, here is a config that worked for us on a Cisco 5520 (latest firmware).
    access-list iphone_splitTunnelAcl standard permit <insert ip> <insert mask>
    access-list iphone_splitTunnelAcl standard permit <insert ip> <insert mask>
    crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
    crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
    crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
    crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
    crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
    crypto ipsec transform-set iphone esp-3des esp-sha-hmac
    crypto ipsec transform-set iphone mode transport
    crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
    crypto dynamic-map SYSTEMDEFAULT_CRYPTOMAP 65535 set pfs
    crypto dynamic-map SYSTEMDEFAULT_CRYPTOMAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5 iphone
    crypto map outside_map 10 match address vpn
    crypto map outside_map 10 set transform-set ESP-AES-256-SHA
    crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEMDEFAULT_CRYPTOMAP
    crypto map outside_map interface outside
    crypto isakmp enable outside
    crypto isakmp policy 10
     authentication pre-share
     encryption 3des
     hash sha
     group 2
     lifetime 86400
    crypto isakmp policy 20
     authentication pre-share
     encryption aes-256
     hash sha
     group 5
     lifetime 86400
    crypto isakmp nat-traversal 20
    group-policy iphone internal
    group-policy iphone attributes
     wins-server value <insert ip> <insert ip>
     dns-server value <insert ip> <insert ip>
     vpn-tunnel-protocol IPSec
     ipsec-udp enable
     ipsec-udp-port 10000
     split-tunnel-policy tunnelspecified
     split-tunnel-network-list value iphone_splitTunnelAcl
     default-domain value <insert domain name>
    tunnel-group iphone type remote-access
    tunnel-group iphone general-attributes
     address-pool VPN-Pool
     authentication-server-group ActiveDirectory2
     default-group-policy iphone
    tunnel-group iphone ipsec-attributes
     pre-shared-key <insert pre-shared key>
    For iPhone you have to be using IPSec tab for configuration.
    We tried to set up this config using the wizards, but it would not work.
    Later it turned out that wizards by default set this setting:
    "crypto isakmp nat-traversal 20"
    equal to zero and there is no way to change it from the GUI.
    Only after we changed it (increased the value from 0 to 20) through the command line the connection started working perfectly.
    Please let me know how it works out for you.
    Message was edited by: Rogik
    Message was edited by: Rogik

  • Which RV220W VPN-setup do I choose in the following situation?

    My RV220W has a fixed IP-address on its WAN and there is an ISP-provided FQDN with reverse lookup available. Is it possible to setup an IPsec VPN on this box that a Mac laptop can connect to the VPN from any location world wide that does not actively block VN traffic in some way?
    I know a PPTP connection to the server on my LAN works, but I'd rather have an IPsec connection to the RV220W and turn the PPTP server on the host inside my LAN off.
    If this is possible, what do I enter where in the wizard?
    I have been unable to get this from the manual or by trying to find a recipe somewhere on the net,

    It explains how to set up the RV220w for IPSec, and connecting using free IPSec clients on both Windows and MacOS.
    https://drive.google.com/file/d/0B0EERf9TN4v1Ym9uaWRlMXhfVGM/edit?usp=sharing

  • RV082 and iPhone issues

    Hi,
    This is a 3 part question.
    1. Is there a way to configure an iphone to connect using its native cisco IPSEC client to a RV082 router. If so, any configuration details would be very much appreciated.
    2. If #1 is not possible, is there an iPhone IPSEC app that can be purchased and used to connect to a RV082 router?
    3. Currently, I use PPTP to connect my iphone to my RV082 router, but it has 2 annoying problems.
             A.   Every single time that I try to connect my iPhone to my RV082 via PPTP, it takes 2 trys.  They 1st try always fails (and takes about 45 seconds to do so), and then the 2nd try (only if I try again immediately after the failure of the 1st try) always connects.
              B.  Once connected, it will not stay connected.  The disconnect time varies, but it it usually 2 to 4 minutes.
    Does anyone out there have a solution for this time out problem?
    Other than 1, 2, and 3 above, my RV082 works great.  It has an IPSEC tunnel to another location that works great, is up 24/7 and very rarely disconnects.  I also have 3 users at remote locations that access the servers behind the RV082 every day, all day long, via PPTP with no major issues.  If I could get iPhone connectivity working reliably via either IPSEC or PPTP, I would be totally satisfied with my router!
    If anyone out there has any suggestions, I would be very grateful!

    See "How to get Leopard for iPad, iPhone, or other hardware or software upgrade?", http://discussions.apple.com/thread.jspa?threadID=2597332
    It explains all your options.

  • RV220W and iPhone VPN IPSec

    Hello there,
    I currently have RV042 and I can VPN (pptp though) to it with no prob. I'm considering upgrading to one of these new routers that Cisco has recently brough out.
    Before I bit the bullet, I wonder whether this new model is iphone fully ipsec compatible because as of now I just can't use ipsec but pptp.
    Thanks

    Hi there,
    I currently own a rv042 and have no problems to VPN into my network. I've configured the router as a PPTP server and my iPhone connects just fine currently, but I'm looking for an alternative cause the VPN throughput in that scenario is extremely poor. Although there is no reference to max PPTP VPN throughput on the datasheet of the rv042, I had expected it to be similar to IPsec throughput which is detailed on that datasheet.
    I even created a case and haven't received, to my opinion l, proper support from Cisco. Well, whatever... Don't want to continue as this would be off topic...
    I started this thread because I wanted to know if this new device implemented enterprise IPSec VPN or SOHO IPSec VPN (and yes that also surprises me because I thought VPN was standard...). It makes me angry to find out that there seems to be two flavours of IPSec. This defeats the whole idea of a standard, doesn't it?
    Please, can anybody with the rv220w confirm whether or not it features pptp VPN server support, and if iOS devices can stablish a PPTP VPN with it?
    I'm just analysing this new device before I purchase it and find out again that I does not fulfil my expectations.
    Thanks
    Sent from Cisco Technical Support iPhone App

  • RV220W: IPsec and iOS (iPhone/iPad)

    Hi,
    Yesterday i've bought rv220w router. Basicaly for its VPN connectivity. Specification says that this router supports IPsec.
    I've done everything, but coudn't establish a connection between router and my iPhone. As you know iPhone supports IPsec. So there must not be any problems, however it is.
    I want to use this router only for its IPsec.
    PPTP is working well, but that is not an option. PPTP is not secure because of the MSCHAP V2 authentication and other stuff.
    The main reason i bought this router is IPsec. So please help me to configure IPsec connection with my iOS devices.
    Arnas

    Good morning
    Hi  Arnas, thanks for using our forum, my name is Johnnatan and I am part of the Small business Support community. I´ve seen your post and I found a couple of articles that could help you. One of them is about IKE policies and the other one is about the VPN policies.
    http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=2273
    http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=1435
    I hope you find this answer useful,
    *Please mark the question as Answered or rate it so other users can benefit from it"
    Greetings,
    Johnnatan Rodriguez Miranda.
    Cisco Network Support Engineer.

  • File Sharing over IPsec with RV220W

    Hello all,
    Ultimately, the issue is that I have two RV220Ws with an IPsec VPN tunnel between them that appears to be up but that I can't seem to get folder sharing going over. Here's the background.
    I originally had two Netgear FVS318s set up with a VPN tunnel and everything worked as expected. I could connect to the server at the office from a machine at home and browse the files and more importantly do nightly backups of files that had changed at the office over the VPN to the house. The problem with the FVS318s was that for wireless I had to have another device and that the WAN to LAN throughput was something like 7Mbps. Kind of limiting when you consistently get 22Mbps from the ISP.
    So, I bought two Cisco RV220Ws to replace them with. I started by replacing the one at home and was able to get it going with the FVS318 at the office. The VPN was stable and I had no problem browsing the files on the server as I had already been doing. A couple weeks later I replaced the FVS318 at the office with the other RV220W and the VPN came up fine but I lost all ability to file share between the two sites. I've watched the phase 1 and 2 negotiations and they look good from both ends. Looking at the IPsec Connection Status shows IPsec SA Established. I know that the tunnel is there because I can ping various machines at the other site from either end. I've tried just about everything I can think of but I just can not get file sharing going. The other issue is that while I can ping each of the RV220Ws from either end, when I try to hit the distant end's management console through a web browser, I get the initial SSL certificate warning that I click proceed on and then it just sits there spinning trying to load the management console on the distant RV220W. With the FVS318s I could hit the distant end management consoles via browser. So, here's more detail.
    Site: Home
    Subnet: 192.168.1.x
    Comcast Business Class Internet with a static IP
    Site: Office
    Subnet: 10.2.10.x
    Comcast Business Class Internet with a static IP
    I know the difference between my static (inbound IP) and my gateway (outbound IP)
    I tried creating firewall access rules by defining services as follows:
    FS-TCP: 135 - 139 TCP
    FS-UDP: 135 - 139 UDP
    SMB-TCP: 445 TCP
    SMB-UDP: 445 UDP
    Then the firewall access rules as follows (I'll just give a couple examples so you'll get the gist)
    Connection type: Inbound (WAN(Internet) > LAN (local network))
    Action: Always allow
    Service: SMB-TCP
    Source IP: Single IP
    Start: xxx.xxx.xxx.xxx (this is the gateway IP of the distant end at home)
    Send to Local Server (DNAT IP): 10.2.10.x (the static IP of the server)
    When that wasn't working, I created another set of rules for the internal IPs of the distant end as follows:
    Connection type: Inbound (WAN(Internet) > LAN (local network))
    Action: Always allow
    Service: SMB-TCP
    Source IP: Address Range
    Start: 192.168.1.1
    Finish: 192.168.1.254
    Send to Local Server (DNAT IP): 10.2.10.x (the static IP of the server)
    I also enabled Remote Management of the RV220W as:
    Access Type: Single IP address
    IP Address: xxx.xxx.xxx.xxx (gateway IP of the distant end at home)
    Port 443
    When that didn't work, I created two additional firewall rules for port 443 for the home gateway IP and the internal 192.168.1.x IPs. Still no go.
    So this is where I'm stuck. In the FVS318s I did not have to create any firewall rules for the VPN traffic. I started off with no rules for the RV220W because I didn't expect it'd need them and then I began adding the firewall rules in order to troubleshoot. Here's the funny thing. If I drop the FVS318 back into place at the office site, it all works as expected.
    So where do I go from here guys? About the only thing I haven't done is burn down the VPN tunnel in the RV220Ws and I haven't done that because I can ping hosts on either end and if I drop the FVS318 back into place it works fine. I'm totally stumped and would sincerely appreciate any assistance anyone could provide. If you need additional configuration information, I can provide that.
    Thanks.

    Thanks for answering, I was beginning to worry nobody had any idea how to help.
    The IP subnets did not change on either end.
    I am using the IP address to map. Critical machines are either static IP or reserved in DHCP and are all in the IP range of the VPN Policy.
    I can ping distant end machines in both directions by IP through the tunnel but I can not ping by hostname. I do not have NETBIOS enabled on the VPN policy. I'm using OpenDNS on both sides, so when I try to ping the hostname of the server I get the opendns.com IP back because it couldn't resolve the IP of the hostname during the lookup.
    Sorry for the delay in replying. Unfortunately, one end is at home, the other at my wife's business. During the day, I'm at work on the other side of town from both.

  • Iphone 3G VPN iPsec

    So I was ecstatic about the new 3.0 features for the iPhone but the thing that really caught my eye was the ability to tether. I was thinking "hey, I can finally take road trips with my buddies while still working". So i get the update and tether successfully... I then go to connect to my vpn server which is over ipsec through AT&T Dialer and it gets stuck at Authentication... So now I have no idea what to do.

    Using Cisco IPSec for VPN, the 3.0 change to the iPhone requires that the firewall/VPN concentrator to be set to allow IPSec VPN over NAT-T.
    In the Cisco ASDM > Config > VPN > IKE > Gloabal Parameters > Check box for Enable IPSec over NAT-T

  • RV220W IPsec tunnel connected, but no ping is working

    Hello,
    I have a problem with my RV220w router and IPsec connections.
    The tunnel is connected, but no ping is working. I have not changed any Settings on the Client Site or Router Site. The last succsessful tunnel wit this configuration is a half year ago.
    The local and remote network have different ip-address.
    I have both firmware versions 1.0.4.17 and 1.0.5.8 tested.
    A tunnel over PPTP is working fine. The ping works successful.
    Has anyone an idea?
    kind regards
    Martin Schubert
    Configuration:
    Client Software:
    - Windows 7 64Bit
    - ShrewSoft VPNClient 2.2.2
    n:version:4
    n:network-ike-port:500
    n:network-mtu-size:1380
    n:client-addr-auto:1
    n:network-natt-port:4500
    n:network-natt-rate:15
    n:network-frag-size:540
    n:network-dpd-enable:0
    n:client-banner-enable:1
    n:network-notify-enable:1
    n:client-dns-used:1
    n:client-dns-auto:1
    n:client-dns-suffix-auto:1
    n:client-splitdns-used:1
    n:client-splitdns-auto:1
    n:client-wins-used:0
    n:client-wins-auto:1
    n:phase1-dhgroup:5
    n:phase1-life-secs:86400
    n:phase1-life-kbytes:0
    n:vendor-chkpt-enable:0
    n:phase2-life-secs:3600
    n:phase2-life-kbytes:0
    n:policy-nailed:0
    n:policy-list-auto:0
    n:phase1-keylen:0
    n:phase2-keylen:0
    s:client-auto-mode:pull
    s:client-iface:direct
    s:network-natt-mode:enable
    s:network-frag-mode:enable
    s:auth-method:mutual-psk-xauth
    s:ident-client-type:fqdn
    s:ident-server-type:fqdn
    s:ident-client-data:remote.com
    s:ident-server-data:local.com
    s:phase1-exchange:aggressive
    s:phase1-cipher:aes
    s:phase1-hash:sha2-256
    s:phase2-transform:esp-aes
    s:phase2-hmac:sha2-256
    s:ipcomp-transform:disabled
    n:phase2-pfsgroup:5
    s:policy-level:auto
    s:policy-list-include:192.168.1.0
    Router:
    IpsecIKEPolicy[1]["Direction"] = "1"
    IpsecIKEPolicy[1]["EncryptionAlgorithm"] = "5"
    IpsecIKEPolicy[1]["LocalIdentifier"] = "local.com"
    IpsecIKEPolicy[1]["ExchangeMode"] = "1"
    IpsecIKEPolicy[1]["RemoteIdentifier"] = "remote.com"
    IpsecIKEPolicy[1]["Presharedkey"] = "is secret"
    IpsecIKEPolicy[1]["IKEPolicyName"] = "abc"
    IpsecIKEPolicy[1]["LocalIdentifierType"] = "1"
    IpsecIKEPolicy[1]["SALifeTime"] = "28800"
    IpsecIKEPolicy[1]["DPDDetectionPeriod"] = "10"
    IpsecIKEPolicy[1]["ModeConfigStatus"] = "0"
    IpsecIKEPolicy[1]["XAUTHType"] = "2"
    IpsecIKEPolicy[1]["DPDFailureCount"] = "3"
    IpsecIKEPolicy[1]["AuthAlgorithm"] = "3"
    IpsecIKEPolicy[1]["AuthType"] = "0"
    IpsecIKEPolicy[1]["DHGroup"] = "5"
    IpsecIKEPolicy[1]["DPD"] = "0"
    IpsecIKEPolicy[1]["_ROWID_"] = "1"
    IpsecIKEPolicy[1]["RemoteIdentifierType"] = "1"
    IpsecVPNPolicy[1]["EnableKeepAlive"] = "0"
    IpsecVPNPolicy[1]["LocalSubnetMask"] = "255.255.255.0"
    IpsecVPNPolicy[1]["EncryptionAlgorithm"] = "5"
    IpsecVPNPolicy[1]["AuthAlgorithm"] = "3"
    IpsecVPNPolicy[1]["RemoteNetworkType"] = "0"
    IpsecVPNPolicy[1]["LocalGateway"] = "0"
    IpsecVPNPolicy[1]["RVGStatus"] = "0"
    IpsecVPNPolicy[1]["VPNPolicyName"] = "abc"
    IpsecVPNPolicy[1]["LocalStartAddress"] = "192.168.1.0"
    IpsecVPNPolicy[1]["Status"] = "1"
    IpsecVPNPolicy[1]["Netbios"] = "0"
    IpsecVPNPolicy[1]["AutoPolicyType"] = "1"
    IpsecVPNPolicy[1]["KeepAlivePeriod"] = "10"
    IpsecVPNPolicy[1]["PFSKeyGroup"] = "5"
    IpsecVPNPolicy[1]["SPIOut"] = "0x"
    IpsecVPNPolicy[1]["KeepAliveFailureCount"] = "3"
    IpsecVPNPolicy[1]["LocalNetworkType"] = "3"
    IpsecVPNPolicy[1]["SALifeTime"] = "3600"
    IpsecVPNPolicy[1]["IKEPolicyName"] = "abc"
    IpsecVPNPolicy[1]["FailbackTime"] = "30"
    IpsecVPNPolicy[1]["RemoteEndPoint"] = "remote.com"
    IpsecVPNPolicy[1]["NodeId"] = "1"
    IpsecVPNPolicy[1]["SALifeTimeType"] = "0"
    IpsecVPNPolicy[1]["PolicyType"] = "1"
    IpsecVPNPolicy[1]["SPIIn"] = "0x"
    IpsecVPNPolicy[1]["RemoteEndPointType"] = "1"
    IpsecVPNPolicy[1]["_ROWID_"] = "1"
    IpsecVPNPolicy[1]["Rollover"] = "0"

    At the glance,
    First, what are your netmasks for those networks? I suppose they are 255.255.255.0.
    Second, check your Remote Security Group and Local Security Group on B and C for their tunnel. Maybe permutation?
    Third, check Routing table (Setup->More->Advanced Routing then at the bottom Show Routing Table).
    Should be something like - on B:
    10.0.0.0
    255.255.255.0
    GW for B
    10
    ipsec0
    and on C:
    10.0.1.0
    255.255.255.0
    GW  for C
    10
    ipsec0

Maybe you are looking for

  • How can I substitute characters in a string when the same characters are used in both input and output strings

    Hi Numbers users, I am trying to get Numbers 2.3 on OS X (10.9.1) to convert  cells containing variable length strings composed of 6 letters, A, B, C, a, b, c into a second string containing the same 6 lettersusing the rule A to c, B to b, and C to a

  • Safari 5.0.6 not compatible with the LOOP

    My homepage is Sympatico which has now upgraded to the LOOP. Everytime I go to my hompeage it tells me my browser is not supported. I am running MAC OSX 10.5.8 with Safari 5.0.6. The LOOP says that I must be at Safari 5.1. Is this as simple as upgrad

  • ITunes installs everytime I start it

    I'm runing iTunes on Vista Ultimate. Everytime I start iTunes, it says preparing to install then says please wait while Windows configures iTunes. Any ideas why this is always the case? Also, for some reason, it's become horribly slow. It constantly

  • Newly downlowded third-party apps won't open.

    I have a mid-2010 MacBook Pro and am running OS 10.8.4.  Recently, I have tried to download several third party applications.  I got the usual Gatekeeper warnings and have bypassed them.  In fact, I have disabled Gatekeeper completely.  I have also t

  • Joining AVCHD clips into a simple MPEG output file

    I'm using PE 10 and just tried joining AVCHD 5 clips using the Instant Movie sequence. I saved it as a file for use on a computer. It took nearly an hour to render the file and when it was done, I emded up with an F4V file which requires conversion t