cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
219
Views
0
Helpful
1
Replies

VPN 3005 - Multiple spokes that need to see each other

marcs
Level 1
Level 1

I have a VPN 3005 concentrator that has multiple lan-to-lan IPSec tunnels coming into it, some of which need to communicate with one another. I'm having an issue configuring this -- I've got a tunnel gateway configured, which would be the same as the internal lan default gateway. I've also got network lists configured to allow the traffic from one spoke to another but cannot get it to work. Any ideas? Thanks!

1 Reply 1

gmarogi
Level 5
Level 5

You can try changing the value for tcpmss to see if the problem is with the size of the packets. You can also try the option "Fragment prior to IPSec encapsulation without Path MTU Discovery(Clear DF bit)", it may resolve the problem.