ROUTE ADD Networking Help

I have a network that lives on 192.168.0.x.  Very standard stuff, gateway on .1, etc.

We need to create a VPN to another site (that has an subnet of 192.168.11.x)

We have 'split' our Internet connection.  The original router, which will be used for regular Internet usage will stay at 192.168.0.1.

We have put in a new VPN router and that lives on the network 192.168.25.x (with the router itself being .1)

Each have their own external IP connecting to the Internet.

Both routers plug into the 24 port switch of the network.

I need to put in a route statement (all the workstations) so that all traffic destined for the .11.x network goes out the .25.1 gateway.

I am having some trouble, which I think is with the subnet mask (however, I am ready to be corrected).

Should I setup the subnet masks on each workstation to be 255.255.0.0 and then have a

ROUTE ADD statement 192.168.11.0 MASK 255.255.0.0 192.168.25.1

I am getting a variety of errors when I try this.

Also, what should the subnet of the VPN router be set to?

Help appreciated...

Thanks,

TN
tnormanAsked:
Who is Participating?
 
risner_itCommented:
tnorman,

i think your making this more complex than it needs to be. to simplify this you can do one of two things.

1-(in my opinion the best)Use the VPN Router as your main internet connection router also. Set your VPN router ip from the 25.X network back to the 0.X network after the vpn tunnel is estabblished when traffic from your network destined for the 11.X network hits your vpn router now at 192.168.0.1 it will know to route it through the vpn tunnel.

This is typical of SMB type setups.

2-(option 2 sticks with your "split" internet connection) Configure your VPN router for 192.168.0.254 and then create the vpn tunnel for the 11.X network and once its established.

Route add 192.168.11.0 mask 255.255.255.0 192.168.1.254 1 to work stations.

and everything on network should have /24 subnet mask (255.255.255.0)

This is typical of corperate frame-relay connection setups.
0
 
Juan OcasioApplication DeveloperCommented:
Try

Route add 192.168.0.0 MASK 255.255.0.0 192.168.25.1 1
0
 
giltjrCommented:
You need to re-evalute you IP addressing.  If you use 255.255.0.0, then every IP address from 192.168.0.0 through 192.168.255.255 will be on the same subnet.  This means that 192.168.1.x will think it can talk directly to 192.168.11.x withOUT going through a router.

You seem to have 3 what I would guess are 3 unique subnets, 192.168.1.0/24, 192.168.11.0/24, and 192.168.25.0/24.

If you want to route between the three, then you will need a router on each subnet that is connected to each of the other subnets, or one router that is connected to all three subnets.

0
Network Scalability - Handle Complex Environments

Monitor your entire network from a single platform. Free 30 Day Trial Now!

 
HeavyWaterLTDCommented:
you need to either put the VPN router on the same subnet as your original router 192.168.0.x.... and add a route for 192.168.11.x network pointing to the new IP address of your VPN router.

OR

if your original router allows secondary ip addressing then add a secondary ip address to the interface in the 192.168.25.x range. then add a route for 192.168.11.x network to 192.168.25.1.

In your current configuration the 2 routers will never route to each other because they do not share the same subnet to route to (in other words there is no layer 3 connectivity)
0
 
ner_1808Commented:
risner_it has got the easiest solutions for you without changing too much in option 2.
0
 
tnormanAuthor Commented:
Thanks everyone for your comments.  We are trying 'risner_it' #2 solution this morning.

I will report back.

Thanks,

TN
0
 
risner_itCommented:
tnorman,

let me know if you get stuck =)
0
 
tnormanAuthor Commented:
Solution #2 worked great.  We wanted to keep this installation 'separate' from the other users.

Thanks!

TN
0
 
risner_itCommented:
tnorman,

glad it helped, even though i mistyped the route add part should have been 192.168.0.254 but i see you got the idea.

-risner_it
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.