STS Tunnel

Unanswered Question
Sep 4th, 2008

Hi,

We have just made two tunnels with 65.205.4.34 and 196.44.242.50 and its activated but we have created access list to exempt the traffic but seems it's some missing or wrong in the configuration. We want to exempt only 172.17.80.247 machine from both remote sites and the remote local networks are 192.168.10.0, 100.0, 200.0, 50.0, and 51.0. From both sides, the networks are not able to contact with each other. The config file is attached.

Please advice.

Attachment: 
I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
ray_stone Fri, 09/05/2008 - 02:50

Hi, What I want that is,one of the server (172.17.80.247) which is not a part of FW V-lan, its a part of Switch V-lan and that switch is directly connected with one of the interface intf2 of the FW. I have created two tunnels with remote sites which are 65.205.4.34 and 196.44.242.50 and when I execute this command sh isakmp then its shows both tunnels are activated, it means there is no issue with the configuration of Tunnels but I have created access rules for remote Network so that the macine (172.17.80.247) and remote network traffic can be exempted but I dont know whts wrong in the configuration due to which both remote and local networks are not talking with each other.

Remote Network are :-

192.168.50.0

192.168.51.0

192.168.100.0

192.168.200.0

192.168.10.0

Please respond, it's urgent.

Actions

This Discussion