• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 465
  • Last Modified:

vpn tunnel mode versus transport mode

I am looking at a IPSec site-to-site VPN connection routers configuration and I see that one router has the transform set mode tunnel and the other side has transform set mode transport. Will this be a problem? The tunnel is up and running. But I am not sure if there are any errors in the background. Thanks
0
leblanc
Asked:
leblanc
  • 3
  • 2
3 Solutions
 
naderzCommented:
For a site-to-site tunnel you should be using the tunnel mode. I would make sure they match on both ends.
0
 
leblancAccountingAuthor Commented:
what if they don't match. What command can I use to see what mode they are using on both end. Thanks
0
 
lruiz52Commented:
Agree with naderz, both sides should be the same,

On router to router vpn you should use tunnel mode on both sides, check the link below for a good explanation of both modes and when to use;


http://www.firewall.cx/networking-topics/protocols/870-ipsec-modes.html
0
Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
naderzCommented:
I am not sure what devices you are using. Here is the command for a Cisco device

show crypto ipsec sa

Here is another link that also explains the different modes and their intent:

http://www.ciscopress.com/articles/article.asp?p=25477
0
 
leblancAccountingAuthor Commented:
We are all Cisco gear
0
 
naderzCommented:
Try the command above and the links provided for more information.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

  • 3
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now