cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
799
Views
0
Helpful
3
Replies

RV082 - Can't VPN on 2nd Subnet

shaamcisco
Level 1
Level 1

I have enabled Multiple Subnet option on an RV082. VPN works on the main subnet but, not on the 2nd subnet. I am using Shrew Soft VPN client.

Any help would be really appreciated.

 

Thanks,

1 Accepted Solution

Accepted Solutions

Mehdi Boukraa
Cisco Employee
Cisco Employee

Hi Shaamcisco,

 

please follow this steps : 

Step 1 : I assume that you have already add additional subnet if not just add it under Setup --> Network and then add additional subnet and for better implementation for the subnet better to have like this example if you have the default network 192.168.1.1/24 add second subnet 192.168.2.1/24 in this case in the VPN setup we can do subnet summarization and will be 192.168.0.0/16 class B and all the PC connected to the router should have gateway 192.168.1.1 or 192.168.2.1 in my example of course

Step 2 : Under VPN -- > summary --> edit the old configuration for VPN client and change the local network to 192.168.0.0 mask 255.255.0.0 

Step 3 : on shrew VPN also under policy  --> Remote Network Resource change to 192.168.0.0 255.255.0.0 

 with this configuration client can have access to both subnet And if you want to restrict some client to access to one subnet just change the policy on ShrewVPN to one of the subnet

 

Please rate this post or marked as answered to help other Cisco Customers

 

Greetings

Mehdi

View solution in original post

3 Replies 3

Mehdi Boukraa
Cisco Employee
Cisco Employee

Hi Shaamcisco,

 

please follow this steps : 

Step 1 : I assume that you have already add additional subnet if not just add it under Setup --> Network and then add additional subnet and for better implementation for the subnet better to have like this example if you have the default network 192.168.1.1/24 add second subnet 192.168.2.1/24 in this case in the VPN setup we can do subnet summarization and will be 192.168.0.0/16 class B and all the PC connected to the router should have gateway 192.168.1.1 or 192.168.2.1 in my example of course

Step 2 : Under VPN -- > summary --> edit the old configuration for VPN client and change the local network to 192.168.0.0 mask 255.255.0.0 

Step 3 : on shrew VPN also under policy  --> Remote Network Resource change to 192.168.0.0 255.255.0.0 

 with this configuration client can have access to both subnet And if you want to restrict some client to access to one subnet just change the policy on ShrewVPN to one of the subnet

 

Please rate this post or marked as answered to help other Cisco Customers

 

Greetings

Mehdi

Hi Mehdi,

Thank you for your quick response. I already had setup 2nd subnet 192.128.127.1 and it is kind of late to change it to 192.168.2.1 as 192.128.127.1 is in production. One thing I noticed was when I add 192.128.127.1 along with 192.168.1.1 under policy in Shrew VPN once connected I was able to ping 192.128.127.1 but not any other address in that subnet. Not sure what was the exact message in the log but was something sync flood .... denied

Let me know if you have any other suggestions.

 

thanks,

Hi Mehdi,

I followed instructions in your PDF file that you have attached to one of your post and it worked for me. I spent so much time trying to get access to 2nd subnet but, when I followed your instructions I was able to VPN to 2nd subnet.

thanks again for your help