[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW1] problem with IKE vpn
Much of my success for site-site VPN, regardless of whether it is both CP on both ends or not, is to avoid NAT in the VPN tunnel. Let me know if you need a hand to do this... Mick Gunter wrote: > Hello, > > Am working on setting up a point to point IKE VPN between two Nokia IP330 > boxes. both are vpn-1 4.1 sp2. > > After configuring both sides for VPN, I can originate communication from > site A to site B but not from Site B to site A. > > The curious thing in the logs is that on site A (the site that seems to > work) when I ping site B the log records the actual (invalid) IP addresses > for both the source and destination node > > On site B (the site that doesn't work) the log file records the external if > of site A's firewall. > > I have hide nat configured for both internal network subnets. > > thanks in advance for assistance, > Mick > > ================================================================================ > To unsubscribe from this mailing list, please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================================================ ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|