cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
1791
Views
0
Helpful
2
Replies

configure cisco asa 5505 like easy vpn server and easyvpn clien

mafija1975
Level 1
Level 1

So I have three ASA 5505 firewall. my firewalls we are in the test environment. I read on the net that when you have a situation like in my company where are headquarter and two offices, i should put  in each branch office and headquarter one asa firewall and a firewalls should be configured as easyvpn. VPN server is in headquarter and easyvpn's are in branch offices. i tried everything, but we could not configure them. maybe it's not a problem that in my test environment at my the external interfaces which have static addresses on these three firewalls, respectively serever 192.168.2.1, 192.168.2.2 and 192.168.2.3 client client. I seted firewalls by following the instructions, but does not work

http://www.cisco.com/en/US/doc...ati...ezvpn5505.html
http://www.petenetlive.com/KB/Article/0000337.htm
http://www.cisco.com/en/US/pro..._ex...805c5ad9.shtml

can you give me some instructions?

I solved the problem with the server as a remote access VPN. client workstations that are on the 192.168.2.0/24 network can access a local LAN via VPN. But when you put the ASA 5505 firewall. clients on the LAN side of the firewall can not access the VPN. I use software products Cisco VPN Client 5.0.06, but when I create a connection and try to connect to get an error

secure vpn connection terminated locally by the client. reason 412: the remote peer is no longer responding

it seems that the problem with the easy VPN client. i configure with guide
pls help me

2 Replies 2

Parminder Sian
Level 1
Level 1

Hi Goran,


Have a look at this example, this one is specifically for Easy VPN client to server.:-


http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00808a61f4.shtml


The error that you are getting might be because of missing NAT-T on server.


Enable it using command "crypto isakmp nat-t"


Hope this helps.


Regards,

Parminder Sian

one more question the working stations behind the easyvpnclient- the asa 5505 firewall, how do they connect over VPN? they use the Cisco VPN client?

thanks

ps: i checked nat-t is enabled!