04-29-2011 05:24 AM
So I have three ASA 5505 firewall. my firewalls we are in the test environment. I read on the net that when you have a situation like in my company where are headquarter and two offices, i should put in each branch office and headquarter one asa firewall and a firewalls should be configured as easyvpn. VPN server is in headquarter and easyvpn's are in branch offices. i tried everything, but we could not configure them. maybe it's not a problem that in my test environment at my the external interfaces which have static addresses on these three firewalls, respectively serever 192.168.2.1, 192.168.2.2 and 192.168.2.3 client client. I seted firewalls by following the instructions, but does not work
http://www.cisco.com/en/US/doc...ati...ezvpn5505.html
http://www.petenetlive.com/KB/Article/0000337.htm
http://www.cisco.com/en/US/pro..._ex...805c5ad9.shtml
can you give me some instructions?
I solved the problem with the server as a remote access VPN. client workstations that are on the 192.168.2.0/24 network can access a local LAN via VPN. But when you put the ASA 5505 firewall. clients on the LAN side of the firewall can not access the VPN. I use software products Cisco VPN Client 5.0.06, but when I create a connection and try to connect to get an error
secure vpn connection terminated locally by the client. reason 412: the remote peer is no longer responding
05-05-2011 02:25 AM
Hi Goran,
Have a look at this example, this one is specifically for Easy VPN client to server.:-
The error that you are getting might be because of missing NAT-T on server.
Enable it using command "crypto isakmp nat-t"
Hope this helps.
Regards,
Parminder Sian
05-05-2011 07:06 AM
one more question the working stations behind the easyvpnclient- the asa 5505 firewall, how do they connect over VPN? they use the Cisco VPN client?
thanks
ps: i checked nat-t is enabled!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide