Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN -PIX on Central site ADSL router on Remote site

Hi

We have a PIX firewall 515R on our Central site. On our remote we are using Cisco 667 ADSL router for connecting to the Internet.

Anybody can help me to configure the VPN tunnel for the above setup. I have few questions about this setup.

1. We have tried to configure the VPN client with Dialup intenet account, we are able to establish the session with PIX and access our corporate network.

2. When we tried to configure the VPN client through ADSL internet connection (Remote site ), the PIX is not establishing the connection... Whyb ????????

Please help !!!!!!!!!!1

Thanks

Suresh

2 REPLIES
New Member

Re: VPN -PIX on Central site ADSL router on Remote site

more than likely the pix is giving the client a pat addres so that will not work..make sure there is a one to one translation

Bronze

Re: VPN -PIX on Central site ADSL router on Remote site

Suresh, Once the tunnel is established, the actual data encryption uses ESP protocol as the data transport protocol. Unfortunately, there is no layer 4 port information on this protocol. When your VPN client sends out an encrypted packet on ESP, and you ADSL router is doing PAT (Port Address Translation ), your packet would get dropped on the Cisco 667 ADSL router.

Hope that explains your scenario

Jazib

97
Views
0
Helpful
2
Replies
CreatePlease login to create content