01-07-2013 12:21 PM
Hi,
First i wanna show my setup :
We have 3 internet links from different providers connected to configured WAN 1,2,3 in RV016.
A remote client needs to connect to a internal VPN Server behind RV016, so we use one-to-one NAT to publish the internal server ip to a Valid IP from WAN3 and setup protocol binding in Multi wan to all trafic (TCP and UDP) from the internal VPN address exits with WAN3.
So, the remote client tries to connect to VPN using this ip Address from WAN3 and sometimes work and sometimes not. It's clear to us that the problem lies in the response from RV016 not coming always from WAN3, because if we disconnect the two other links (WAN1 and 2) Its works flawless.
Any help would be apreciated !
PS : Sorry fro my english
01-07-2013 12:59 PM
Good morning
Thanks for using our forum
Hi Marcos, my name is Johnnatan and I am part of the Small business Support community. In order to solve your problem Marcos you have to bind your VPN traffic to a specific Wan, in this case Wan3, you can do this using a “protocol binding” for ports 50, 51, 443, 60443, 500, 4500. Let me share you some documents that could help you.
http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=2996
http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=589
I hope you find this answer useful,
*Please mark the question as Answered or rate it so other users can benefit from it"
Greetings,
Johnnatan Rodriguez Miranda.
Cisco network support engineer.
01-08-2013 04:37 AM
Jonathan,
Thx for your reply. I read the documentation and this is what i am already doing, but i was creating just one line in protocol binding screen telling the router to foward everything from VPN Server internal IP (TCP and UDP) to WAN3. Now, i tried to create one rule for each port (the ones you specify) but it does not seens to work too.
Just let me be more clear : the VPN i am using is not Ipsec, Its PPTP. So, i was wondering if it could be a problem with Gre Protocol... My doubt is that in protocol binding screen you can choose pre-existent or create new services, but only TCP/UDP services and not protocols. Gre is a protocol type 47. How could a tell the router that i need Gre traffic using only Wan3?
I already see Gre in bandwitch management and specify to use just Wan 3 but it is not working this way.
Thx.
01-08-2013 06:03 AM
Hi Marcos, I apologize for the issues you are having, I want to ask you a couple of question, are you using another router that supports GRE? The RV016 doesn´t support it, how many networks do you have in your topology? Could you share a little more about your topology (Be careful with confidential data). Also I´m going to share you some documents about PPTP
http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=570
http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=2957
http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=3211
I hope you find this answer useful, *Please mark the question as Answered or rate it so other users can benefit from it"
Greetings,
Johnnatan Rodriguez Miranda.
Cisco network support engineer.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide