Solved

can't connect to VPN (remote access client)

Posted on 2009-04-14
4
305 Views
Last Modified: 2012-05-06
I have a pix 506e at my home. I sometimes connect via software cisco client, into our vpn. I cannot get in since I installed the pix at my house. Is there some type of config I need to do in my pix to let the vpn traffic in and out? I am guessing my pix is the issue

Like I said, I used to connect fine with my off the shelf router. Since the pix install, I cant

0
Comment
Question by:dissolved
  • 2
4 Comments
 
LVL 4

Assisted Solution

by:SimWhite
SimWhite earned 25 total points
Comment Utility
global (outside) 1 interface
nat (inside) 1 192.168.1.1 255.255.255.255 (where 192.168.1.1 - you local IP)
0
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 475 total points
Comment Utility
Make sure you have NAT-Traversal enabled on the VPN server.  The PIX does not have built-in IPSEC Passthrough like your home router which is the difference.  Enabling NAT-Traversal on the headend (VPN Server) should take care of it.
0
 

Author Comment

by:dissolved
Comment Utility
thanks. and if we have site to site vpns terminating in the pix as well, that command wont hurt anything?
0
 
LVL 43

Expert Comment

by:JFrederick29
Comment Utility
Nope, it won't hurt anything.
0

Featured Post

Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

Join & Write a Comment

There are many useful and sometimes not well documented or forgotten IOS or ASA/PIX commands. See IPE article here , there was also one on PacketU and on Cisco Tips & Tricks. Below are my favorites. I give also a few most often used for Cisco IPS an…
When I upgraded my ASA 8.2 to 8.3, I realized that my nonat statement was failing!   The log showed the following error:     %ASA-5-305013: Asymmetric NAT rules matched for forward and reverse flows It was caused by the config upgrade, because t…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now