Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Recent content by iozone

  1. iozone

    help cisco to cisco vpn with nat

    ok problem solved. the isp this afternoon reexamined their equipment. still not finding any port blockage, completely cleared their configuration. the cisco vpn then became operational. i would still like to know if anyone has a better way to trouble shoot the outside connections. thanks for...
  2. iozone

    help cisco to cisco vpn with nat

    hello all, this weekend i pulled both routers off line (one at a time) and tested in an off line mockup. all security associations were established without problem. the isp claims to be blocking nothing that would affect the sa's. my port scans show end to end connectivity for port 500 although...
  3. iozone

    help cisco to cisco vpn with nat

    yes, i do have a spare router,in fact a mockup was done successfully before installation on the network. the configuration has changed since then with the addition of the 192 network on fstpres. in retrospect the configuration was not tested thoroughly enough, i didnt read the debug output but...
  4. iozone

    help cisco to cisco vpn with nat

    yes, unsuccessfully
  5. iozone

    help cisco to cisco vpn with nat

    let me clarify my last post, i first enabled cef and then tested with ping. then ip route-cache was disabled on e1/0 and tested with ping. neither has been returned to its initial state.
  6. iozone

    help cisco to cisco vpn with nat

    good mornong:) please excuse my frustration last night. ok i've done both, global cef and turned off fast switching on e0/1. there has been no change.
  7. iozone

    help cisco to cisco vpn with nat

    hi, yes i can ping the outside interfaces of each router from inside the other router and from the nat inside nodes. everything is functional except the vpn. i've run a port scanner on both exterior interfaces to check port 500 and it seems to be open. the isp indicates that there are no ports...
  8. iozone

    help cisco to cisco vpn with nat

    sure, here goes: fstpres# Current configuration : 2051 bytes ! version 12.3 service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname fstpres ! boot-start-marker boot-end-marker ! enable secret 5 $1$Hm/q$AG3nzQLloIhRrYJWDhbb.0 ! no aaa...
  9. iozone

    help cisco to cisco vpn with nat

    hi guys, i.m having problems establishing a vpn between a 2610 ios c2600-ik9o3s-mz.122-10a and a 3620 ios c3620-ik9o3s6-mz.123-9a. copied below are the debug ipsec/isakmp outputs. i,m a relative newby so be nice, but it seems unusual to me that i only get debug info from the initiating router...

Part and Inventory Search

Back
Top