Hi thanks for taking the time to check this out. Here is a brief but pertinent part of my config....
interface FastEthernet1/0
description link to ISP
ip address dhcp
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly
load-interval 30
duplex auto...
Hello all. I've been trying to set up a VPN group using pix 6.3. I have included both the pix config and the debug while attempting to test the client connection. The pix is sitting from behing a router which is nat'd. I've allowed UDP 4500 and 500 to pass through. It looks like it is...
Hello all. I've been trying to set up a VPN group using pix 6.3. I have included both the pix config and the debug while attempting to test the client connection. The pix is sitting from behing a router which is nat'd. I've allowed UDP 4500 and 500 to pass through. It looks like it is making...
Hi all,
I am currently wanting the pix to perform all natting without having to perform nat on the router. Basically I don't want to double nat and at this point there doesn't seem to be a choice. I CAN get out if nat is enabled on the router but not when it's disabled. Any idea what I may be...
Hi all, I've recently upgraded my 3640 to ios 12.3(26) ipsec 3des and realised something strange. If I apply NO acl at all, I cannot resolve web pages or hit the i-net from I.E. If I apply just a standard permit any I can get out fine. Now I removed all signs of acl's...I scoured the entire...
Hi all,
Just wanted to thank everyone for their input on this topic. It turned out to be an incorrect configuration on the provider's end. Getting the config from the provider was almost like pulling teeth. Anyhow, web traffic is now flowing nicely out the secondary interface. A tracert...
This was the response from our service provider...
I’m only routing traffic destined for 10.128.33.0/24 to you. I’m going to add 10.0.15.0/24 to point to you as well. Would you prefer we change to /30’s if there is going to be another network behind your equipment? Anyways, I’m adding that...
I'm working on it. Kinda tough to get the configs when dealing with an outside provider using their equipment (netopia). I don't think it should be a problem but I will post it as soon as I know something. Thanks for the responses btw. :-)
Thanks, I am almost certain our provider has added the 10.128.33.0 subnet with a route. I could be wrong but I am thinking there may be an issue with that providers configuration. I am wondering if it may be something we're not doing correctly on our end.
Hi all,
We're pretty stumped and cannot seem to figure out the problem. We have a stub office who's company WAN connection uses the serial interface on a cisco 1841. F0/0 is used for the local subnet. Thus far, traffic including www traffic has been successfully routed through that serial...
Well, I'm running EIGRP since there are multiple routers connected into the 3640 via serial wics. I also happen to favor that routing protocol on Cisco equipment. I'm using PPP as my encapsulation since I am running MLPPP in my environment. Voltron, that's exactly what I've experienced with...
Hi all,
I've been running a 3640 with dual ethernet interfaces and using NAT for quite some time. When I disable NAT and change the default route to the next hop (my isp's gateway ip) I get nothing. I'm running eigrp and have added the network number my isp has (at the time) assigned me...
Hello all,
I've recently discovered an issue while end users are trying to connect using Nortel VPN connectivity client. Upon examining ethereal I am seeing dropped packets (ESP) and icmp messages stating host unreachable. I've checked at another location which uses a non cisco router and all...
Hello all,
In my home lab environment I use the following order...Cable modem to linksys ---> 3620. If I am connected via the linksys I can connect just fine when using Nortel networks connectivity client (VPN). If I am connected to the 3620 I cannot get past it. From Ethereal I see there...
Thanks! i will give this a shot. As far as the other router on the DTE side, would I apply this same config with a different IP? (minus the clock rate commands ofcourse)
Yeah, I set encapsulation PPP on both routers. I'm not sure if I need to enter the ppp multilink on just the two DCE ends or on all ends DCE -- DTE I will post the copy of my configs when I get a chance. Thanks.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.