Solved

Cisco ASA5505 VPN with PPoE

Posted on 2009-05-04
1
481 Views
Last Modified: 2012-05-06
We have about 20 ASA5505's connected back to our VPN concentrator all using the same configs (other than the changes for the different internal network addressing).  They all work fine.  Now I've taken two more ASA5505's to setup through a different DSL provider that uses PPoE.  I can get the ASA to authenticate and pull a valid address, but the VPN tunnel does not come up.  

I can bring the ASA back to my house, remove the PPoE settings (my provider does not require) and plug it into my DSL conection and it comes right up.  Is there any trick when using PPoE that you need to account for other than setting the PPoE username and password?  When I look at the debug logs I don't see the external address that the ASA is given in any of the attempts to build a tunnel.  I can post some of the errors but thought I'd post this first.  
0
Comment
Question by:jpletcher1
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 

Accepted Solution

by:
jpletcher1 earned 0 total points
ID: 24317756
I figured this out.  When you do PPoE there is an additional setting (checkbox) that you have to mark in order for the ASA to use the default ip route (gateway) that is given by PPoE.  Seems kind of odd that this isn't the default.  All we were getting was the IP address and subnet mask otherwise and obviously the ASA couldn't reach out to connect to our concentrator with not default route.  
0

Featured Post

Save the day with this special offer from ATEN!

Save 30% on the CV211 using promo code EXPERTS30 now through April 30th. The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Optimal Xbox 360 connectivity requires "OPEN NAT". If you use Juniper Netscreen or SSG firewall products in a home setting, the following steps will allow you get rid of the dreaded warning screen below and achieve the best online gaming environment…
Like many others, when I created a Windows 2008 RRAS VPN server, I connected via PPTP, and still do, but there are problems that can arise from solely using PPTP.  One particular problem was that the CFO of the company used a Virgin Broadband Wirele…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

732 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question