Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Pix to Pix VPN with Client to PIX PPTP

Status
Not open for further replies.

NetworkGuy101

IS-IT--Management
Aug 13, 2002
482
US
I have a Pix to Pix VPN Setup with client VPN PPTP to pix also. It works great unless the client wishes to connect though the PPTP VPN and then through the Pix to Pix VPN. I Guess the Pix has problems routing through the same interface. Anybody have a similar situation? I had thought of just having the user connect 2 VPN Tunnels. 1 to the first pix and the second to the 2 Pix to be able to reach resources on bot networks but I believe that will be to much "Pressure" on the user. Any Ideas?
 
The only way I know of that you could pull that off would be to VPN into the first network, connect to a desktop through a remote administration tool, then fire up a vpn client on that machine which would vpn you to the next network...

So it would still involve using a second client instance..

Computer/Network Technician
CCNA
 
Well that is done but then the clients would have to have 2 VPN connections. I have very particular clients. They want one connect and have access to all sites and they want it on the pix. You would think that this would be considered a bug or something. I dont think it is a uncommon situation.
 
I agree with NetworkGuy101. We have an IPSEC VPN (pix-to-pix) between our main office and our colo facility where our web-cluster is hosted (we have a lot of programmers that routinely do work out there) and we also have a remote access VPN. Right now home users login to the remote access VPN, then use RDP to get on a machine here to go out to the colo facility. I would love to elminiate the need to do this.

Does anyone know if Cisco plans to remove this limitation in a future version of the OS?

Steve Boyle
IT/Network Administrator
Metro Entertainment/Ticketnetwork
27 Terrace Dr.
Vernon, CT 06066
steveb@ticketnetwork.com

Phone: (860)870-3400 x229
(860)875-1892 x121
 
Anybody know of a place we could go to complain to cisco about?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top