I have 2 sites with 3015 concentrators in each site. I want to create a simple ipsec lan to lan to pass traffic between certain devices. I have setup static routes on those devices to forward traffic through the inside address of the vpn concentrator. I cannot get the lan to lan to show up as active. All settings are the same on both concentrators with the exception of the local/remote settings, as they are reversed on each. The private addresses of both concentrators, are 192.168 addresses with b masks. Do the private addresses need to be in different networks to get the tunnel to come up. Any help would be greatly appreciated.
looks like the private networks are in the same subnet on both the ends. in this case, u must do some kind of natting at either end, to bring up the tunnel. If not, the tunnel will not come up, since the traffic will never go out of the outside interface of the VPN concentrator, since both ends are in the same network. Either u can change the network address at one end, or do some kinda natting.
hope this helps.. all the best.. rate replies if found useful..
BenefitsDocumentationPrerequisiteImage Download LinksLimitationsSupported PlatformsLicense RequirementsTopologyStep-By-Step ConfigurationConfigure Virtual ServiceActivate the virtual service and configure guest IPsConfiguring UTD (Service Plane)Configurin...
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...