cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
334
Views
0
Helpful
1
Replies

EASY VPN on ASA5505

jorjes1984
Level 1
Level 1

hi all

I need to do configure a VPN between a branch (ASA5505) and a HO (VPN concentrator).

The IT gaved the following info for the configuration in the branch office,

USERNAME and PASSWORD

GROUPNAME and PASSWORD

and Peer Address.

So i deduced that they need an EASY VPN to be configured on the ASA5505

so i configured it with the following commands:

vpnclient server x.x.x.x

vpnclient mode client-mode

vpnclient vpngroup GROUPNAME password ********

vpnclient username branchvpn password ********

vpnclient ipsec-over-tcp port 10000

vpnclient enable

The VPN connected successfully and there is ping from LAN to LAN

but the client in the HO is telling me the following:

Other remote locations except your connection are having different IP range.

So when you are connecting from your branch to the HO VPN server, your IP subnet (i.e. 192.168.0.0) should publish in the network instead of taking the IP 172.17.0.0 from the VPN server as we have OSPF configured in our VPN Server.

172.17.4.0 Range is set for the VPN users.

Can any one advise what type of connection could be configured on the ASA, taking into the consideration the input that i was given and the requirement?

1 Accepted Solution

Accepted Solutions

Fernando_Meza
Level 7
Level 7

Hi ..

try changing

vpnclient mode client-mode for

vpnclient mode network-extension-mode

That should solve the problem.

Please rate helpful posts !!!

View solution in original post

1 Reply 1

Fernando_Meza
Level 7
Level 7

Hi ..

try changing

vpnclient mode client-mode for

vpnclient mode network-extension-mode

That should solve the problem.

Please rate helpful posts !!!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card