Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN User not able to connect to inside (local) resource

Status
Not open for further replies.

rstitzel

MIS
Apr 24, 2002
286
US
I have enabled L2TP PPTP VPN on my Cisco 501. I have created a VPN group called "VPN_USERS". When the users come in I assign them an internal IP address from a range of 192.168.0.162 - 192.168.0.170.

When the users log in they are authenticated by the firewall but are unable to connect to internal resources. Such as our AS400 who's IP Address is 192.168.0.190.

The error I get in my log is:
No Translation group found for tcp src outside: 192.168.0.162.1154 dst inside: 192.168.0.190/449

What do I need to do to configure my pix to allow my remote users to connect to inside resources.

Thanks in advance for any and all help.
 
I would recommend using a pool of IP addresses from a subnet that is not on any interface on the PIX. Have you configured a nat (inside) 0 access-list <acl-name>? I am suspecting that is the reason why you are getting that syslog. Hope this helps!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top