Link to home
Start Free TrialLog in
Avatar of cnesupport
cnesupport

asked on

network/vpn issue

I have a client with 2 networks in the same building.  They want to be able to communicate between the networks. The option to combine into 1 network is not an option.  Current the topology is this

                                                                                      Gateway
                                                                         |                                  |
                                                         Static ip cisco RV082                static ip cisco RVS4000
                                                                     

I attempted to setup a vpn between the 2 routers but it will not connect, any ideas?  
ASKER CERTIFIED SOLUTION
Avatar of ipajones
ipajones
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
First, make sure the subnets on each end are different. They might be the same.

Make sure on the RV082 that you are using Gateway to Gateway VPN and not Gateway to Client. Check the similar setting on the RVS4000. Check that the VPN settings including Phase 1 and Phase 2 are identical on both routers. Then check in the VPN Advanced Settings (RV082) for Aggressive Mode. I have it unchecked but check both routers for this setting. Also check NAT Traversal. You may need it set on at one end. Check both settings.

... Thinkpads_User
Avatar of cnesupport
cnesupport

ASKER

currently the rv082 is 192.168.0.251  the rvs4000 is 10.3.0.1  

basically the boss want to be able to walk around and no matter which network he is at he can get to the data on either side.  

Yes Thinkpads user it is gateway to gateway and all the phases on the same
So now check in the Advanced Settings. I had to enable NAT Traversal a couple of times to get a connect. It depends on the situation, but do check NAT and Agressive Mode.

.... Thinkpads_User
tried that same result
There are logs in both RV boxes. Turn on logging and see what it tells you.

 ... Thinkpads_User
log from the rv082

ct 17 05:28:31 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 05:28:31 2011           VPN Log          initiating Aggressive Mode #37, connection "ips0"
Oct 17 05:28:31 2011           VPN Log          STATE_AGGR_I1: initiate
Oct 17 05:28:34 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 05:28:34 2011           VPN Log          initiating Aggressive Mode #38, connection "ips0"
Oct 17 05:28:34 2011           VPN Log          STATE_AGGR_I1: initiate
Oct 17 05:29:44 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 05:29:44 2011           VPN Log          initiating Aggressive Mode #39 to replace #38, connection "ips0"
Oct 17 05:29:44 2011           VPN Log          STATE_AGGR_I1: initiate
Oct 17 05:30:54 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 05:30:54 2011           VPN Log          initiating Aggressive Mode #40 to replace #39, connection "ips0"
Oct 17 05:30:54 2011           VPN Log          STATE_AGGR_I1: initiate
Oct 17 06:45:31 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 06:45:31 2011           VPN Log          initiating Aggressive Mode #41, connection "ips0"
Oct 17 06:45:31 2011           VPN Log          STATE_AGGR_I1: initiate
Oct 17 06:46:41 2011           VPN Log          [Tunnel Negotiation Info] >>> Initiator Send Aggressive Mode 1st packet
Oct 17 06:46:41 2011           VPN Log          initiating Aggressive Mode #42 to replace #41, connection "ips0"
Oct 17 06:46:41 2011           VPN Log          STATE_AGGR_I1: initiate
rvs4000 log

Oct 17 06:45:22 - [VPN Log]: "trend" #2: initiating Aggressive Mode #2, connection "trend"
Oct 17 06:46:32 - [VPN Log]: "trend" #2: max number of retransmissions (2) reached STATE_AGGR_I1
Oct 17 06:47:57 - [VPN Log]: "trend" #3: initiating Aggressive Mode #3, connection "trend"
Oct 17 06:49:07 - [VPN Log]: "trend" #3: max number of retransmissions (2) reached STATE_AGGR_I1
Check through your main settings and check the use of Agressive Mode at each end. The logs suggest you are not getting to first base at all. I don't see any phase 1 packets.  ... Thinkpads_Use
r
They are both set to use agressive mode, I know it seems like they can't see each other at all.  I am wondering if there is some kind of block on the gateway or since they both use the same gateway if there is a problem with that as well.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
that is what I am think as well, but not being able to find anything useful online yet.
thanks for the help, turned out the isp had the routing all messed up on the gateway.  vpn is up and running normally now.
Thanks for the update and I am glad you got it up and running. ... Thinkpads_User