08-29-2001 10:53 AM - edited 02-21-2020 11:24 AM
I have a Pix 515 (6.0) and I have a VPN client 3000 loaded on a windows 2000 box. I can establish a VPN connection but I can't pass any packets! or access anything on the inside network. What might I look at?
08-29-2001 11:25 AM
Check you route set up on your 3000 box.
BinXie
09-06-2001 07:50 AM
Also had the same problem with the same set-up. VPN connected fine, but couldn't connect to internal services.I Found that the only way to get this working was to add "sysopt ipsec pl-compatible" command.
Cisco's view on the command is this
"Note: The PIX Firewall currently only supports IPSec on the outside interface. Although the PIX Firewall currently can simulate the Private Link inside termination with the use of the sysopt ipsec pl-compatible command, the termination on the inside interface is not a true termination. For more information on the sysopt ipsec pl-compatible command, see the sysopt command page."
The only other way I found (without using the above command) is to use Network statics or static translations to the devices you need to see on the inside network.
Hope this helps
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide