cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
280
Views
0
Helpful
2
Replies

How to Troubleshoot VPN3005-to VPN3005 connection?

dan.ring
Level 1
Level 1

Hello,

I have a VPN3005 device here, and another in Europe. As far as I can tell, all of the configuration settings are correct for our LAN-to-LAN VPN connection. In a test environment, the LAN-toLAN session would connect on it's own, with no intervention required. Are there any troubleshooting techniques for diagnosing the sessions failure to connect?

The 3005 Event Logs don't seem to register anything about this session attempting to connect.

thanks,

Dan

2 Replies 2

edadios
Cisco Employee
Cisco Employee

You need to be passing traffic to build the tunnel. In the lab environment, there may have been some routing protocol causing the tunnel to build automatically.

The even logs would not show much unless you enable to particualr classes for debugging. See here for more info:

http://www.cisco.com/warp/customer/471/vpn3k-conn.html .

Regards,

awaheed
Cisco Employee
Cisco Employee

Hi Dan,

Additionally if you donot see any log messages from the other side, you might also want to make sure udp port 500 and ESP traffic is allowed in the middle. Additionally do make sure to do the basic connectivity tests. Sometimes if it works in the lab and doesn't in production, its usually a firewall blocking traffic which wasn't there before.

Hope this helps,

Aamir Waheed,

Cisco Systems, Inc.

CCIE#8933

-=-=-