Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Branch Office Setup Not Working

Status
Not open for further replies.

joopdog

MIS
Jun 30, 2002
28
US
I'm setting up a branch office using WatchGuard:
=====-----=====
Fireware Version: 9.1, build: 20030
pmm: Version 9.1, Build 20030, Patch , Sep 11 2007 19:25
RCE Module: Version 9.1, Build 20030, Patch , Sep 11 2007 19:25

Serial Number: 9999986099BB9
Product Type: Firebox X750e
BOVPN Server setup (62.136.116.110)
1. I've setup the the MAIN OFFICE Gateway
General Settings tab
Credential Method
Use Pre-Shared Key: nightowl3000XP
Gateway Endpoints
Local Gateway
IP Address 62.136.116.110
Remote Gateway
Static IP Address 171.198.252.33 (the client)
The gateway ID for tunnel authentication
IP Address 171.198.252.33 (the client)
DVCP Client Setup (171.198.252.33)
Firebox Name: Firebox_1000
Certificate lifetime: 365
DVCP Server
IP Address: 62.136.116.110 (Main Office server)
Shared Key: nightowl3000XP
=====-----=====
I get this error message:
2007-12-14 16:01:33 Deny 192.168.1.2 192.168.3.100 2007/tcp 1025 2007 1-Trusted unknown packet with TTL=0, firewall drop (internal policy)
What am I doing wrong? I ran the BOVPN Policy Wizard. I'm close, but not there as yet.
 
What I’m attempting to do is the following:
We have a dedicated point-to-point connection between our two locations. However, if the dedicated lines go down, we like to use the BOVPN as backup. I’m trying to setup this up.

Did I setup the client side WatchGuard correctly?
===---=-=-=---===
Info on my Client side WatchGuard:

WatchGuard, Copyright (C) 1996-2007 WGTI
Driver version: 7.5.0.B2068
Daemon version: 7.5.0.B2068
Sys_B Version: 4.61.B742
BIOS Version: 0.42-c
Serial Number: 99999999
Product Type: Firebox III/1000
===---=-=-=---===

I open the Policy Manager. Then I click on ‘Network’, I get two options, “DVCP Client…” or “Branch Office VPN->Manual IPSec”. Which one do I choose to create my Branch Office on the client side?

You mentioned a Routing Loop. How do I find this Routing Loop?

Any help would be appreciated.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top