06-16-2014 09:37 PM
Information:
I have an Amazon VPC setup that is connected to another company's VPN. It's done with isakmp, bgp, gre, with two tunnels. I'm using the Cisco CSR1000V on Amazon, connected to it via Putty (SSH).
The router and tunnel setup all works correctly. From the router on my side (Amazon) I can ping any device over the tunnel successfully. Phase1/2/3 are all working correctly.
I can ping my router from the window servers but I can't ping across the tunnel from the windows server. I can ping the windows server from the router too.
Question:
What can I do to allow access across the tunnel for the windows server? It seems like it must be a router setting that I am missing.
Setup:
My IP address setup:
My subnets:
I've attached the router configuration and detailed interface configuration.
06-16-2014 11:32 PM
Hi,
Do u have any NAT configuration which affects your LAN traffic. If so you may need to create the NAT exemption rule for the private ranges. All you need to create an no NAT rule and assign that to outside interface. There should not be a problem with routing since you are able to reach it from the router to end systems and from LAN to your router.
Hope this helps
Regards
Karthik
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide