Link to home
Start Free TrialLog in
Avatar of Rick Bergami
Rick Bergami

asked on

VPN ip address can't be pinged

Hello,

I have a point to point vpn set up. One location is 10.1.10.1 the other is 192.168.1.1.  On one computer at 10.1.10.1 I can connect to the db on the machine 192.168.1.6 (and I can ping 192.168.1.6) from all other computers at 10.1.10.1 I cannot connect to 192.168.1.6 and when I try to ping it, I get "no response from 192.168.1.2". It changes the ip address. Can anyone help with this? Thanks
Avatar of masnrock
masnrock
Flag of United States of America image

Need more detail. What type of firewalls? And are they allowing traffic across subnets?
Avatar of Rick Bergami
Rick Bergami

ASKER

Right now the only firewall is built into the vpn router. One computer on the 10.1.10.1 subnet can access 192.168.1.6 computer so I am not sure why all the others can't. Thanks
Makes and models of the routers?
tp-link tl-er604w
On point-to-point, the internal IP arrangement at each end needs to be a subnet. Otherwise you connect only to the point and not beyond. Did you do that?
Yes, thanks.
Check the VPN phases and key (single error causes issues). See if NAT Traversal needs to be on at one or both ends.
Can the machine that can't ping the DB server ping any other machines in the other location?
Also trying deleting and remaking the tunnel at both points where the failure is occurring.
Yes, it can ping other devices at the other location. Weird. It get ping .2 and .4 (that is all I have tried).  I did try deleting both points but the same thing.
SOLUTION
Avatar of John
John
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Thanks. Is there any reason you guys would know when I ping .6 it says no response from .2?
That is why I suggested (1) Firewall and (2) complete reset.
This is why you should try the traceoute first. Then you may be able to see where the ICMP traffic isn't going through. That should be a quicker way to troubleshoot. What device is at .2 anyway, the vpn router for that site?
Did you try the solutions we provided?
Author has abandoned and the solutions offered will point to a solution.