Solved

routing through a vpn

Posted on 2011-03-03
3
347 Views
Last Modified: 2012-05-11
We have a handful of buildings all over town connected to the main office (building A) via point to point t-1s.  For this we have used cisco 2600 routers using static routes.  Works fine until now.
We have one building(building B) that is connected to our main building with the same point to point for access back to the main.  But for political reasons they have their own cable internet using a sonic wall tz170 (and own IT guy sigh).  Still no real issues.  Internet traffic gets routed out the sonicwall, internal traffic out the cisco router.

Now the issue: that remote building(building B)as added a sub building(building C).  This sub building also has a cable line and a sonic wall tz100.  There is a vpn setup between the remote building and its sub building and that is working fine.  Where I have issues is trying to route anything from the main building(building A) to the sub building(building C).  With basic static routes I only manage to get all traffic from building a routed to building C out the cable internet in building B, never the vpn (going to building C)

After a bit of research I realized this may take a bit more them my basic Cisco knowledge.
Any help would be appreciated
0
Comment
Question by:lrpage
  • 2
3 Comments
 
LVL 1

Accepted Solution

by:
rwellender earned 500 total points
Comment Utility
If I read this correctly, the only connection C has back to the rest of the network is through a VPN tunnel to B.  If this is correct, I would review the access list that define the traffic that goes over the VPN tunnel between B and C.   It seems as though you have the routing tables working OK, it just the definition of what gets sent over the VPN tunnel.  From the perspective of the Sonic Wall at location B, the networks at A and B would be 'local'  and C would be "remote".  At the Sonic Wall at location C, the reverse would be accurate where the networks at A and B would be defined as remote.
0
 
LVL 3

Author Comment

by:lrpage
Comment Utility
Your thoughts are correct.  I have already made sure the vpn traffic on building c includes all the subnets from all the buildings (we are running a 10.x.x.x. subnets so i just said 10.0.0.0/8 so all traffic would go through originating from building C to rest of network.
Just noticed though (since you made me look at it :-)) That the rules from building b to building c only allowed building b on the vpn.  So looks like i need to add the whole network as the rules.  Should be easy enough.
I will let you know how successful I am
0
 
LVL 3

Author Closing Comment

by:lrpage
Comment Utility
Works great now.  Of course I overlooked something as easy as that.  sigh
0

Featured Post

Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

Join & Write a Comment

Don’t let your business fall victim to the coming apocalypse – use our Survival Guide for the Fax Apocalypse to identify the risks and signs of zombie fax activities at your business.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now