cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1074
Views
31
Helpful
22
Replies

VPN Tunnel between 3 locations

lexiainfo
Level 1
Level 1

Dear Expertise

Recently we hava configured vpn tunnel between two locations. Now would like to create a vpn tunnel on third location. What configuration will applies on cisco PIX 501 firewall version 6.3.4.

Please refer thr existing pix config at both location.

22 Replies 22

No its not created yet. i have followed each and every instructions which is provided by you but still the same problem. I strongly believe there must be some more commands to add in all the three locations to work perfectly.

If you feel so please send me the list of others commands.

thanks

please post the latest config?

Thanks for the reply. I have successfully created vpn tunnel between three locations.Basically i have added the below commands in all the locations.

=====================================================crypto map rtpmap 1 ipsec-isakmp

crypto map rtpmap 1 match address 102

crypto map rtpmap 1 set peer

crypto map rtpmap 1 set transform-set SecuritySet

crypto map rtpmap 1 set security-association lifetime seconds 3600 kilobytes 4608000

=====================================================

I thank you very much jaccko. I LEARN LOT FROM YOU.

The only problem was if you would have asked me to put the above commands in all the location then i would have created the VPN on your third comments.

Hence i learned how to create VPN tunnel between three location and you are the one who teached me how to create.

I alos thanks to NETPRO.

Have a good weekend

hello,

does your configuration allows you to initiate vpn from any location to any location?

I ask coz i will be implementing the same.

thanks.

the config sample i posted is lan-lan vpn, not ezvpn. so it can be initiated either from the local or remote site.

Sorry didnt understand your question.

"the config sample i posted is lan-lan vpn, not ezvpn"

What is ezvpn?

In my question i mentioned vpn tunnel between three location so for me its LAN-LAN-LAN VPN.

so far the config in this post is lan-lan vpn.

i post that because "cfajardo1" was wondering whether we are discussing lan-lan vpn or ezvpn.

ezvpn is like a server/client model. the vpn device at the h.o. acts as a vpn server whereas all remote vpn devices act as vpn client. the pros is that ease of configuration.

however, the catch is that h.o. can't initiate the vpn, only reomte sites can.

yes

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: