07-23-2008 05:25 AM - edited 02-21-2020 03:50 PM
Ive setup config for a VPN to connect to our head office Netscreen 5GT. It doesnt look like the Cisco is initiating a connection at all and Im not sure why. Here is the config, hope someone can help?
07-23-2008 05:49 AM
deb crypto isakmp
deb crypto ipsec
ping 10.0.0.1 source 192.168.0.1
sh crypto isa sa
sh crypto ipsec sa
07-23-2008 06:07 AM
the vpn isnt even up. dont i need to establish a vpn from cisco to netscreen first.
07-23-2008 06:34 AM
ok :)
this traffic
"access-list 103 permit ip 192.168.0.0 0.0.0.255 10.0.0.0 0.0.255.255" should bring you VPN connection UP.
07-23-2008 06:55 AM
I already have this line in my config. And it doesnt work.
07-23-2008 07:05 AM
so start troubleshooting
deb crypto isakmp
deb crypto ipsec
# try to bring the VPN UP.
ping 10.0.0.1 source 192.168.0.1
show the collected debugs and also the output of following commands
sh crypto isa sa
sh crypto ipsec sa
07-23-2008 07:13 AM
ok i'll try do that, but will be tomorrow now, can you have a look tomorrow please?
07-23-2008 07:19 AM
yes, I do.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: