Solved

IPSEC VPN

Posted on 2016-08-08
10
52 Views
Last Modified: 2016-08-29
Hello,

Is is possible to create ipsec-vPn L2L tunnel when one of the sites is using non-static peer IP? (DHCP) that obviously changes it's IP daily/weekly etc...?  Is it possible to make this connection work even when the IP peer changes without any administrative overhead? is this doable on both ASA's and routers?

Thank you
0
Comment
Question by:Shark Attack
  • 5
  • 4
10 Comments
 
LVL 93

Expert Comment

by:John Hurst
ID: 41748021
Is it possible to create IPSec-vPn L2L tunnel when one of the sites is using non-static peer IP? (DHCP) that obviously changes it's IP daily/weekly etc.

No. Use Dyn DNS or equivalent.

You can do the above if the IP changes only occasionally, but not every day.
0
 
LVL 14

Accepted Solution

by:
SIM50 earned 500 total points (awarded by participants)
ID: 41748738
0
 
LVL 93

Expert Comment

by:John Hurst
ID: 41748743
True but if the dynamic IP changes weekly or more frequently as posed in the question, it is a waste of time because of the overhead.

I use dynamic IP at some sites but the changes are only occasional - less than twice yearly.
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 
LVL 14

Expert Comment

by:SIM50
ID: 41748747
True but if the dynamic IP changes weekly or more frequently as posed in the question, it is a waste of time because of the overhead.

What overhead?
0
 
LVL 93

Expert Comment

by:John Hurst
ID: 41748749
You have to go into setup on the system and change the static IP. At least any client system I have used.
0
 
LVL 14

Expert Comment

by:SIM50
ID: 41748754
You have to go into setup on the system and change the static IP. At least any client system I have used.

LOL. I don't think you fully comprehend how dynamic VPN works. I would love to hear your theories about inner workings of DMVPN or GETVPN.
0
 
LVL 93

Expert Comment

by:John Hurst
ID: 41748760
I have ben using VPN for years. So post your STEPS instead on links people have to pore through.

Unsubscribed.
0
 
LVL 14

Expert Comment

by:SIM50
ID: 41748774
So post your STEPS instead on links people have to pore through.

Why reinvent the wheel? The links I posted have ASDM and CLI step by step instructions.
0
 
LVL 3

Author Comment

by:Shark Attack
ID: 41750389
well thank you both. I will give it a shot see how it works.
0
 
LVL 14

Expert Comment

by:SIM50
ID: 41774463
Provided links with step by step instructions how to implement either through ASDM or CLI.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

832 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question