cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
717
Views
0
Helpful
2
Replies

831 Dual VPN setup Problem

bowser
Level 1
Level 1

Hi,

I'm trying to establish a second site-to-site VPN on one of our Cisco 831 routers for a home user. Our network is such:

London Office: 192.168.0.0 (PIX 515e)

New York Office: 192.168.52.0 (PIX 515e)

Home user: 192.168.100.0 (831 Router)

There is currently a Tunnel setup between London & New York acting a failover for t1. The home user already has a VPN setup to the London office. Home user to New York is the problem.

Can anyone see what I'm missing. IKE state on the New York PIX is QM_IDLE. There is no decap\ encap only errors when I send traffic through. Error status reports that packets sent from New York PIX are a problem, no traffic received.

Config's attached and show cry ip sa from 831....

Any help would be greatly appreciated :)

2 Replies 2

umedryk
Level 5
Level 5

You mentioned that it is giving an error message, but what is the exact error message that it is throwing.

bowser
Level 1
Level 1

When I send traffic across the tunnel (attempt) and view the New York PIX's VPN monitor no decap\encap traffic occurs only values under the error field.

The VPN's source is NY, I think that the fault lies with the 831's ACL setup... ie NY PIX is sending traffic but 831 ACL isn't allowing expected reply.

Looking at the 831 conf, do you agree?

Review Cisco Networking for a $25 gift card