cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
208
Views
0
Helpful
1
Replies

Troubleshooting a VPN connection

kevbhafner
Level 1
Level 1

Here is the issue I am trying to solve. A connection to the VPN is made using the Cisco VPN Client, the client picks up an IP address on from the pool and can ping the other computers on the network. However we cannot open a webpage located on one of the client computers as a test. I am sure this is a simple solution, but it escapes me.

Thanks,

-K

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

Are you doing split tunnelling? If so the client will have to send traffic to a host in the network that you're trying to connect from BEFORE that network will be able to connect to the PC.

For example, if you're only tunnelling traffic for the 10.0.0.0/8 and 172.16.0.0/16 networks, no-one on either of these networks will be able to initiate a connection to the client machine, until that client machine has sent traffic to those particular networks. Keep in mind that an IPSec tunnel (SA) is not actually built until traffic is sent to that network.

Also check the "Stateful Firewall (Always On) option under the Options menu on the client, you might need to turn it off.