Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Rhinorhino on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX VPN Issue

Status
Not open for further replies.

kirby449

Technical User
Joined
Jun 15, 2003
Messages
47
Location
GB
Hi Guys

Can anyone offer any advice on the following issue:

From our company offices we would like to be able to VPN into our client's sites for remote admin.

The company offices has a PIX 506 installed, and the client machines have a the Cisco VPN Client v4 installed.

The client sites have either a 501, 506 or 515.

Although these dial-in VPNs works fine from remote PCs connected to the internet, from the company offices the connection is not made. The error comes back saying the remote peer is no longer responding.

All the PCs are going directly through the PIX as a gateway address and can access the internet fine.

Is there a passthru command or something I need on our offices PIX?

Anyone any ideas?
 
you need a static translation for the VPN clients and you also need to open UDP port 500 and ip protocol 50. Alternatively, you can upgrade the PIX to 6.3 and enable NAT-T: "isakmp nat-traversal". Hope this helps...
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top