Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN inconsistancy

Status
Not open for further replies.

excuseme

Technical User
Aug 16, 2005
11
0
0
US
I am using the cisco VPN client to access a 506e. Everything works just fine when accessing the network from home. However, after I establish a tunnel from behind another PIX on some other business network, I can not ping any servers or IPs inside my office. any help?
 
You need to implement NAT-Traversal on both sides of the tunnel. This will allow IPSec over UDP, which is necessary for VPNs from behind NATed or PATed addresses.

Gungnir77
CCNP, Cisco TAC security team
 
It's necessary if you're using PAT-ed addresses. It is not necessary behind static NAT.

CCSP, CCNA, CCSA, MCSE, Cisco Firewall specialist, VPN specialist, IDS specialist
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top