Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

RV082 to SA540 vpn but no ping, something wrong

I'll try my best to explani and give details.

SA540 v.2.1.71 at host

RV082 v4.2.1.02 at remote site.

Trying to setup tunnel between the 2. WHEN this works, I'll have 20 remote sites tunneling into the SA540 host.

SA540:

SA540 says site to site vpn is up and IPsec SA Established.

192.168.1.0

Gateway PoliciesClient Policies
Exchange Mode:MainAggressive
ID Type:Local WAN IPFQDN
Local WAN ID:Local WAN IPlocal.com
Remote WAN ID:N/Aremote.com
Encryption Algorithm:AES-128AES-128
Authentication Algorithm:SHA-1SHA-1
Authentication Method:Pre-shared KeyPre-shared Key
Key-Group:DH-Group 2 (1024 bit)DH-Group 2 (1024 bit)
Life Time:8 hours8 hours

VPN Wizard default values for VPN:

Encryption Algorithm:AES-128
Authentication Algorithm:SHA-1
Life Time:1 hour
PFS Key Group:DH-Group 2(1024 bit)
NETBIOS:Enabled (Gateway Policies)
Disabled (Client Policies)

WAN Security Checks

Block Ping to WAN interface
Enable Stealth Mode
Block TCP flood

RV082:

RV082 says gateway to gateway is Connected.

192.168.2.0

same settings w/ Aggressive, Keep Alive and NAT Traversal checked.

Firewall Setting Status

SPI (Stateful Packet Inspection) : On
DoS (Denial of Service) : On
Block WAN Request : Off
Remote Management : On

FROM RV082 diagnostics on router, I cannot ping 192.168.1.1 router or 192.168.1.70 server inside host.

FROM SA540 host diagnostics, I CAN ping 192.168.2.1 when I check Ping through VPN tunnel, but I canNOT ping an XP computer at 192.168.2.100 which has firewall turned off.

What am I missing?

Goal is to establish full tunneling and computer/server access between sites.

Any help is greatly appreciated.

354
Views
0
Helpful
0
Replies
CreatePlease to create content