Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Untrust VPN to Untrust VPN using Policies

Status
Not open for further replies.

SH3

IS-IT--Management
Jul 2, 2003
5
0
0
US
I am trying to create a hub and spoke VPN. I realize route based VPN's would be easier; however, the vendor for spoke A will not return my messages. Therefore, I need to move ahead with a Policy based hub and spoke. I only need 2 spokes (B and C) to go out spoke A. This thread will just talk about spoke A and B. Vendor for spoke A also setup the VPN on the 5XT hub.

I have not found any documents on setting up the policy based hub and spoke. I have created a single policy to go from untrust to untrust but it does not appear to work. No log entries are generated. Intra-zone block is off for the untrust zone. Using a 5XT on the Hub and spoke B. Spoke A is an unknown.

I almost think I need a separate VPN for traffic that will go from Spoke B to Spoke A. That way I can identify which traffic needs to travel from Spoke B to Spoke A.

Am I correct? Can anyone discuss this or help me?

Thank you,
Steven
 
Hi Paul,
The vendor for spoke A called Tuesday to let me know they are no longer using VPN's in mid September. The entire program is moving to the Web. We will now wait until September and forget about the hub and spoke VPN. No doubt I will learn hub and spoke sooner than later.
Thank you,
Steve
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top