Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I currently have an 1812 router setup to accept PPTP VPN connections. All authentication takes place against a RADIUS server (Microsoft IAS), the config for this, which is working fine, ias as follows:IOS 124-24.T1.binaaa authentication ppp defaul...
Hi,I have an 1812 router running v12.4 IOS. The router acts as the edge router and VPN endpoint for our office. As well as providing internet conectivity, the router also has a couple of VTI's setup to our remote office. I've setup an IPSec tunnel to...
Hi,I'm in the process of connecting up 2 of our offices. Both sites currently have a 10Mb leased line and a basic ADSL connection for backup. I will be using a Cisco 1812 at each site for the leased lines and a Cisco 877 for the ADSL lines. I will be...
Hi,I currently have a GRE/IPSec tunnel setup between 2 2611XM routers with 4 Mbs bandwidth between the 2 sites. When transferring data between the 2 sites I get around 90Kbs over the GRE/IPSec tunnels and the CPU usage maxes out during the data trans...
Hi,We currently have 2 sites. The primary site has 2 WAN connections and the Secondary only 1. All 3 WAN connections terminate at 2600 series routers. I have 2 GRE tunnels setup on the Secondary site router, which terminate at each of the routers at ...
Hi,Thanks for your comments. I've applied your suggestions and that looks to have resolved the issue.Next time I'll enable console logging for all the config.Thank you for your help on this.
Hi,suggestion #1 looks to have done it. Having removed the object group from the acl and just specified a specific entry, the SA now forms. object groups look to work for the NAT acl's but just not for the interesting traffic acl's. Thanks for your h...
Hi, the VTI interface is for connectivity to a remote company office, whereas the standard IPSec tunnel is for connectivity to a client site. The VTI does route multicast traffic as I am currently running OSPF over these tunnels.Thanks
Hi, I forgot to mention that these routers will also provide general internet connectivity and not just site to site connectivity. I was aware of the 8Mbps limit on tunnel interfaces, which is more than sufficient for our environment.Thanks
Thank you for your comment. At Site B there is no layer 3 switch, hence the reason for using HSRP. I was really only interested in keepalives on the Tunnel interfaces at Site B for the purposes of tracking the interfaces using HSRP. So based on your ...