Cisco IOS Router to PIX VPN Issues

Unanswered Question
Jul 19th, 2009
User Badges:

Hi Everyone,

I have a small issue here which someone may be able to shed some light on.

I have a Cisco IOS router which is terminating a site-to-site VPN connection on the dialer interface. The PIX on the other end is behind a NAT router. The tunnel is being established and one subnet is able to see another when the tunnel is up. The thing we are having an issue is both networks on each side of the VPN contain multiple subnets and i cannot connect to all the subnets over the same tunnel.

Any ideas.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Collin Clark Mon, 07/20/2009 - 12:19
User Badges:
  • Purple, 4500 points or more

Do you have all the networks in the NAT exemption and in the interesting traffic ACL? Also check to make sure your routing is in place for all the subnets.

Hope that helps.

tommyjreige Mon, 07/20/2009 - 15:27
User Badges:

Yes all this is setup.

I have just found out that Cisco IOS can only make connections from 1 network per crypt map unless multiple connections are made from server to host. This is quite disturbing because i have not seen this in any documentation.

Does anyone know of IOS to PIX IPsec with multiple subnets on each side of the network.

Collin Clark Tue, 07/21/2009 - 05:22
User Badges:
  • Purple, 4500 points or more

I'm not sure where you you got your information, but it is incorrect. I have configured multiple subnets for VPN with a single connection.


This Discussion