Link to home
Start Free TrialLog in
Avatar of digitalpete
digitalpete

asked on

PPTP tunnel for peer 66.x.xx.xxx denied - already established

- We just opened a small branch office.
 - The branch office is subletting their internet from the landlord at the moment.
- I have a Linksys Wi-Fi router in place. All my clients are on a 192.168.1.x subnet.
- All my clients are able to connect using the Windows native client.
- The problem is that only one client can connect to the VPN at a time
- At my main office I am using a Cisco VPN 3005 Concetrator

For example: If Jane is connected to the VPN, John cannot connect until Jane disconnects from the VPN and vice versa.

The event log on the VPN concetrator shows:
"PPTP tunnel for peer 66.x.xx.xxx denied - already established"

It appears as though all my clients are being assigned the same IP adress once they leave my linksys router.

What can I do to resolve this?
Avatar of digitap
digitap
Flag of United States of America image

Try enabling IPSec pass through on the linksys router.  What's the model of the linksys?
Avatar of digitalpete
digitalpete

ASKER

The router is a WRT54GS Version 6. As I mentioned, I can get all my users logged into the VPN individually. I just can't get more than one user logged onto the VPN simultaneously. I believe IPSec pass-through is enabled by default on most routers, but I'll double-check
I vaguely remember a question with this exact issue, but the particulars are still hazy.  I was thinking that pass through enabled allowed the traffic through the linksys to be seen individually for multiple pptp connections.  Still looking for that question.
There are settings on the VPN Concentrator that allow for multiple logins for the same user group. I'm trying that to see if it works.
OK...will wait.
The VPN Concentrator allows multiple logins for the same user, but it does not look like it will allow it from the same site/LAN. So this means that I could be logged in as "Joe" from home and have another user named "Joe" logged in from another location at the same time.

It appears that I need to create a LAN to LAN VPN.
ASKER CERTIFIED SOLUTION
Avatar of digitap
digitap
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I determined that I as going to need a LAN to LAN (site to site) VPN. The expert merely reinforced my findings.
Glad I could help and thanks for the points!