Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

BSR222 Client Termination issue 1

Status
Not open for further replies.

MagnaRGP

Technical User
May 19, 2005
1,647
CA
I am tired of banging my head on the wall on this and ITAS Level 1 is even less helpful.

I have 2 brand new BSR222s (both with static IPs) that have sucessfully set up a P2P branch tunnel and traffic passes through no issues.

However, if I establish a client tunnel to either BSR, I cannot access the subnet behind it other than the router's internal IP. I can also access the router at the other side of the BOT.

Firewall rules are open except W to W/BSR with is set to Block.
 
So...for grins, I try a little experiment. Instead of a user tunnel being assigned a static IP address from the local subnet, I gave it a static IP address from an all new subnet. Lo, and behold, I can now ping a host in the local subnet. BUT....I can no longer ping a host (including the internal IP of the BSR) at the other side of the BOT.

Somebody think of something puhleez...I'm running out of aspirin.
 
And the answer is.....get Level 2 involved.

For info:

When creating a user tunnel, use a subnet that is different from the local subnet on the router you are connecting to.

Place that new subnet into the local netowork on the local router and into the remote networks on the branch router.

Traffic passes to both subnets now.

This is undocumented in the guides. Either it will be documented in the next guide revision or corrected in the next firmware.
 
hey magnargp ...this thread is like your blog.
I was reading up on bsr ...and thanks for the answer
 
If I have a particular issue then odds are sooner or later, someone else will too.

If I get the answer, and post it, I can save that someone else from dealing with the issues that I did.

That's what forums are fooooor (to paraphrase Whitney).
 
MagnaRGP,
Hi, I am testing a BSR222 and a BCM50e(the same UI as BSR22)
and I just cant get Right to configure the Branch Office Tunnel.
I´ve read the "SMB Solutions Overview and Configuration Guide".
I want to know, if i have to set the connection type "branch Office" on both routers and their respective configuration on each.
This is the way I have configured it, but still dont get anything on the SA monitor.

My goal is to setup the tunnel correctly for data, and then telephony services (ans that is going to be a challenge too). both sites have a BCM, a BCM400 at main site and the BCM50 I am using as a VPN router.

Any help is more than welcome.
if you have any notes or personalized configuration guides would be great.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top