Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

RV320 lan to lan VPN setup for Draytek

Hello Cisco freaks

I am trying to connect a branch office network (Cisco RV320 router) with our other branches Drayteks (2820, 2950, 3900). Both devices look to support common settings but fails to connect. Triple checked all settings, Tried all possible SA, key and encryptions combination to no avail. I am familiar with VPN issues but this time I can not figure out what's wrong. The RV320 syslog does not output enough VPN log to troubleshoot.

  • checklist :
  • differents LAN's
  • consitent phases setting on both devices, tested all groups, hashes and encryptions
  • correct routes and interfaces
  • local security group : subnet
  • using PFS did not help
  • no idea if the "AH Hash Algorithm" needs to be checked, tried all anyway

does the Cisco uses ESP or AH protocol? this may be worth to know

Is the IPsec implementation of Cisco compatible with Drayteks?

Did somebody ever managed to connect those 2 devices?

Regards

 

Everyone's tags (1)
2 REPLIES
New Member

Ok, I got it workingI managed

Ok, I got it working

I managed to connect a cisco RV320 with drayteks (3900, 2820, 2925) using lan to lan VPN.

It was very hard to troubleshoot as the cisco doesn't output VPN logs unless you are successfully connected :-/

I used draytek's log and found a netmask issue. Now it works

For the record here is my working setup

Group 5
AES128
SHA1 withauth
no PFS
ESP (uncheck AH on the cisco uses ESP)

higher settings may work, not tested

 

 

New Member

Hi,

Hi,

Can you attach snapshots from both routers regarding VPN site to site setup.

BR,

Pedro

498
Views
0
Helpful
2
Replies
CreatePlease login to create content