Solved

VPN Remote Access

Posted on 2009-05-14
4
375 Views
Last Modified: 2012-05-07
A customer just purchase VPN licensed for their CP NG R55.  I have setup VPN Remote Access to allow SecurRemote clients access over the internet.  I am able to establish VPN connection with SecurRemote over internet, however I'm not able to ping any internal IP addresses once connected with SecurRemote.  The Smartview Tracker log shows logon and key install succesful.  Also, I have verify the rule for RemoteAccess has "any" for destination and services in Rule base.   ANy reason why I can't ping internal IP address?
0
Comment
Question by:hotrod_952
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 15

Expert Comment

by:bignewf
ID: 24389419
Hello hotrod 952

your config would be helpful, but check your config for the following:

sysopt permit vpn (or ipsec, depending on IOS version)
check your NAT0 statements allowing the ip addresses or ip ranges from this remote site to your internal lan ip ranges
0
 

Author Comment

by:hotrod_952
ID: 24395004
This is for Remote Access for SecuRemote over the internet, not VPN tunneling.
0
 
LVL 15

Expert Comment

by:bignewf
ID: 24402848
Do your internal routers have routes for your vpn clients to reach the internal lan, and do your vpn clients have routes to your internal networks?

have you run a "route print"  command at the command prompt?
0
 

Accepted Solution

by:
hotrod_952 earned 0 total points
ID: 24423726
I figure out the issue.  This particular customer's internal network ip address 192.168.*.* is the same as my home network.  Because SecureRemote doesn't allow you to setup Office Mode on the FW Gateway you must make sure that the home network isn't the same as the customer's internal network.  If so, then the packet doesn't know how to route out to the external gateway.  
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Network traffic routing plays key role in your network, if you have single site with heavy browsing or multiple sites, replicating important application data from your Primary Default Gateway ,you have to route your other network traffic from your p…
Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question