Solved

Two VPNs on a single connection possible?

Posted on 2009-04-04
2
261 Views
Last Modified: 2012-05-06
I am not very familiar with networking and trying to understand our network admin and get a picture of what needs to be done in the following setup:

In the main location, we have two networks physically completely separated with two different ISPs. Each network has a firewall with a public IP (completely independent from each other).

The branch location has one cable internet connection with a modem/router combined. Behind this box are two firewalls with private IP (10.0.1.x) addresses on the WAN ports separating two networks. Firewall1 has a VPN connection established with the network1 in the main office.

I am assuming that firewall1 must be initiating the VPN connection to the main office, because it is located behing the cable/router with a private IP on the WAN port. Am i correct or are there any other options?

What I am trying to do is to establish a second VPN connection between firewall2 (also located behing the cable/router with a private IP on the WAN port) and network2 in the main office.

Can the second connection interfere with the first one in any way (except taking bandwidth)?

Our admin claims that we need to assign static IP addresses for each firewall at the branch location. Is this required? If yes, why?

Thank you for clarification.
0
Comment
Question by:sonetinc
2 Comments
 
LVL 5

Accepted Solution

by:
Mechanic_Kharkov earned 250 total points
ID: 24069732
If the main office has two separated networks 1 & 2, and both has each own VPN server with it's own external IP, then there is no need to set statically IP's in branch firewalls (VPN clients) to connect to them.
Interferences may be present if networks in the main location is not properly isolated with IP's, or if in the branch location there is complex routing rules to main office networks.
As described, firewalls 1 and 2 are the VPN clients, so it doesn't matter what addresses they have, if their servers are separated well.
Maybe there are some additional network dependencies in Your setup, and the admin only knows about them. (?)
0
 
LVL 1

Author Closing Comment

by:sonetinc
ID: 31566659
This is what I came across yesterday...

"If the Netgear FVS318 has a dynamically obtained WAN IP address, it will not be possible to set up a VPN tunnel to the SonicWALL device, due to the way the Netgear FVS318 calculates the initialization vector for phase two. This is a Netgear issue and cannot be addressed by
SonicWALL."

It seems that Netgear has some issues when one of the ends has a dynamic IP.
0

Featured Post

Connect further...control easier

With the ATEN CE624, you can now enjoy a high-quality visual experience powered by HDBaseT technology and the convenience of a single Cat6 cable to transmit uncompressed video with zero latency and multi-streaming for dual-view applications where remote access is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
VPN problems 4 33
Updating Group Policy over a PPTP VPN 21 35
domian network access 5 23
RDP- Windows 7 home Premium to 7 Pro via VPN 10 16
If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question