Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

VPN Gateway with one interface in the local network

hi

I have a cisco 891 behind a dsl gateway with out vpn. the cisco is connected to the local network on the GigabitEthernet0 interface.

the local lan is 172.16.8.0/23 (router on the GigabitEthernet0 ist 172.16.8.4) vpn clients get an address from the dhcp pool 192.168.17.100 - 192.168.17.200.

default gw is 172.16.8.1.

The vpn is working and the client gets the ip 192.168.17.X. I can connect to the cisco ip but to no other device on the 172.16.8.0/23 network. I guess there is a route missing or a loopback interface to make it work

thanks for any information....

manuel

Everyone's tags (3)
7 REPLIES

Re: VPN Gateway with one interface in the local network

Hi Manuel,

Normally what you need to check in the first place is that the local LAN 172.16.8.0/23 has a default gateway set to the router (or a route to send the traffic back to the VPN clients).

Also, the LAN should be included in the split-tunneling and exempt from NAT (if doing NAT on the router).

Also, no ACLs blocking the traffic.

Federico.

New Member

Re: VPN Gateway with one interface in the local network

Sound like a NAT issue

Please share your config

Don't forget ti remove passwords and real IP's

New Member

Re: VPN Gateway with one interface in the local network

hi


my config.

thanks

New Member

Re: VPN Gateway with one interface in the local network

In your config I see that only 1 interface is configured. Is this correct?

New Member

Re: VPN Gateway with one interface in the local network

hi

yes, there is just ohne interface.

cheers Manuel

New Member

Re: VPN Gateway with one interface in the local network

Hi,

maybe the network layout explains  what I'm trying to do.

cheers manuel

New Member

Re: VPN Gateway with one interface in the local network

Hi Mike

is the setup with one interface not posible?

thanks for you answer.

Manuel

567
Views
0
Helpful
7
Replies
CreatePlease to create content