Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VPN WAG54G Problems

Status
Not open for further replies.

ahartoch

Vendor
May 28, 2003
12
0
0
ES
I'm trying to setup for the first time a VPN connection between 2 WAG54G. The firmware version of the routers is 1.02.1. The connection between the two routers is one has dynamic IP and the other one static

Router 1

Local Group -> Subnet 192.168.2.0 MASK 255.255.255.0
Remote Group -> Subnet 192.168.1.0 MASK 255.255.255.0
Remote Security Gateway -> Router 2 Internet address
Encryption->3DES
Authentification->SHA
Auto.(IKE)
Pre-Shared Key->ah3715
Key Lifetime->3600

Router 2
Local Group -> Subnet 192.168.1.0 MASK 255.255.255.0
Remote Group -> Subnet 192.168.2.0 MASK 255.255.255.0
Remote Security Gateway -> Any
Encryption->3DES
Authentification->SHA
Auto.(IKE)
Pre-Shared Key->ah3715
Key Lifetime->3600

In advanced mangament I don't know what to set up.

I was able to connect at one point but I had the follwing issues:

1. From a PC behind router 1 I was able to ping the LAN IP address of router 2 but not to any equipment behind it.
2. From a PC behind router 2 I wasn't able to ping any equipment behind Router 1 not even the router1's local IP address.
3. I received the message Estoy intentando realizar por primera vez una conexion VPN entre dos WAG54G. La version de los routers es 1.02.1. La conexion de la VPN es entre un router con IP fija y otro con IP dinamica.La configuración de los equipos es la siguiente:

Router 1

Local Group -> Subnet 192.168.2.0 MASK 255.255.255.0
Remote Group -> Subnet 192.168.1.0 MASK 255.255.255.0
Remote Security Gateway -> Router 2 Internet address
Encryption->3DES
Authentification->SHA
Auto.(IKE)
Pre-Shared Key->ah3715
Key Lifetime->3600

Router 2
Local Group -> Subnet 192.168.1.0 MASK 255.255.255.0
Remote Group -> Subnet 192.168.2.0 MASK 255.255.255.0
Remote Security Gateway -> Any
Encryption->3DES
Authentification->SHA
Auto.(IKE)
Pre-Shared Key->ah3715
Key Lifetime->3600

En advanced management lo unico que esta activado es el NetBios Broadcast y Keep-Alive

Consegui llegar a establecer la comunicacion entre los dos equipos aunque tenia las siguientes dificultades:

1. Desde un PC detras del equipo 1 podia hacer ping a la ip local del router 2, pero no a los equipos detras del router 2.
2. Desde los equipos detras del router 2 no podian realizar ping ni al router ni a los equipos detras del router 1.
3. I received the message on router 2 " IKE[1] ERROR: This tunnel should not be initiator "


I hope someone can help me out to configure succesfully the VPN connection between the routers.
 
Have you tried specifying an ip address for the remote security gateway on your second router? I've got two WRV54G VPNing and my settings are similar to yours except that both remote security gateways are pointing to each other. I also have vpn tunnel enabled and vpn gateway disabled. Hope it helps.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top