you can create ip pool first then when you doing vpn wizard you can select this pool
ip local pool poolname startip-endip mask (mask)
for example
ip local pool mypool 10.10.0.0-10.10.1.255 mask 255.255.0.0
At this guide everything about client mode, at client mode everything works super fine in my configuration i can ping browse and etc lan behind vpn, problem exist if i changing mode to network extension
At the client pix 501 i have route
ip route 172.16.1.0 255.255.255.0 192.168.1.253
do i need...
Could you copy the page at link http://www.cisco.com/en/US/customer/docs/security/pix/pix63/configuration/guide/pixclnt.html#wpxref36759 to address rednote@gmail.com ?
The link that U gave want CCO username password, I don't have:(
There is a route at Pix501
ip route 172.16.1.0 255.255.255.0 192.168.1.253
You think that I have to add route at 525? ip route 0.0.0.0 0.0.0.0 172.16.1.239 inside ?
Hi
I have Pix525 with configured Easy vpn server and Pix501 as client, when I configuring 501 as easy vpn remote client in "client mode" everything works fine, I can ping,or browse network behind the vpn,in network extension mode I can't
Anyone can help with this configuration?
PIX525 config...
For testing purpose I've installed Pix501 with following configuration on my lan
My pc adres 192.168.1.7 , I'm connecting using Cisco VPN client, still cannot access lan behind vpn
Any suggestion?
Building configuration...
: Saved
:
PIX Version 6.3(4)
interface ethernet0 auto
interface...
but it's wrong, my pc is not gateway for 192.168.240.x...
Pix525 outside interface 192.168.240.253 directly connected to 192.168.240.70 and established vpn..why my pc must be gateway? Also I remind to You again Brian, it's imposible add such route that you advised...this network is directly...
What kind of route? route 0.0.0.0 0.0.0.0 192.168.1.x for example? it's impossible, 192.168.1.x is directly connected network
route for outside interface also not possible, because outside network also is directly connected network
right now our branche connected through bridge connection to main network
branch network--vdsl modem in bridge mode-vdsl dslam bridge- switch 3750 and they working
why there must be problem for pix? pix will see directly connected 192.168.240.x network. and there will not be problem.
but I cannot add on 525 route 0.0.0.0 0.0.0.0 192.168.1.x
because this network is directly connected, on 501 I will add route,but now I'm testing with Cisco VPN Client from my pc
I'm connecting from 192.168.240.70 (ip address of my pc) directly to outside port of pix525 and I can successfully...
I don't need default route, because this Pix will be in center and all branches will be direclty connected to this pix with leased vdsl line.
PIx525 -- vdsl dslam in bridge mode - vdsl modem - pix501 (as hardware vpn client) - customer network
So the outside interface of pix525 and outside...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.