Cisco 877 VPN - two routers remote connection to the head office

Hi all.

Our headquarters has a 877.

Our two remote sites also have 877 and they have a permanent tunnel in 877 headquarters which works OK.

My problem is that two remote sites cannot talk to each other - but they can talk to the seat of fines.

I guess I sort of NAT problem - so I'll post the relevant configs and if someone could take a look and point me in the right direction, I had to be very happy!

Head office config is a txt 192.168.16.5 file

Remote site 'Riversdale' is the 192.168.17.1 text file

Remote site 'Tynewydd' is the 192.168.18.1 text file

How have you checked with pings? Is this an internal host to internal host?

You can check with pings between rays? Please use the internal interface of rays for both source and destination addresses. And send me 'Show details crypto session' of all the routers both before and after the sending of pings.

One thing I forgot in your rays (both) config file is on NAT. Please reorganize both deny entries followed first allow entry.

access-list 100 deny ip 192.168.17.0 0.0.0.255 192.168.16.0 0.0.0.255

access-list 100 permit ip 192.168.17.0 0.0.0.255 any

access-list 100 deny ip 192.168.17.0 0.0.0.255 192.168.18.0 0.0.0.255

Tags: Cisco Security

Similar Questions

  • How to make a route between two routers (networks) connected to the same switch?

    Hello guys, how are you?

    In my company, we have 2 internet routers more dsl router of data connected to 1 switch line

    the data row is used to connect the branches of our company together for network problems.

    the router 192.168.2.1 IP data

    internet routers IP 192.168.1.1 - 57.194.97.1

    We have 3 accesspoints wireless taking their internet of 192.168.1.1 oky guy

    what I want to do is when I connect to any wireless network to connect to the data line dsl with router 192.168.2.1

    When I use the ethernet on my pc I have IP addresses 192.168.2.222 for router data line and 192.168.1.222 for internet

    but the wireless is DHCP n that it is connected only to 192.168.1.1, which is the internet router, how can I do 192.168.1.1 192.168.2.1 when I connect

    using the wireless?

    I hope that you understand me ^_^

    Thanks in advance.

    Hello

    The question you posted would be better suited to the TechNet community. Please visit the link below to find a community that will provide the support you want.

    http://social.technet.Microsoft.com/forums/en/category/w7itpro/

    Hope this information is useful.

  • Failover of VPN client for remote access with the .pcf file

    Hi all

    It is possible to give 2 remote peer ip address to connect customer VPN cisco in FCP file, is possible to achieve failover.

    I have my firewall HO and DR configured for VPN remoteaccess. I need to specify two firewall ips in FCP file in PC client, incase HO firewall is not a customer VPN avialable will automatically connect to the firewall DR. I tried like below his does not work I think

    appreicaite any help...

    [main]

    Description =

    Host = 172.18.4.22

    Host = 172.18.4.10

    AuthType = 1

    GroupName = xxxxxx

    GroupPwd =

    enc_GroupPwd = DDBC400B7B3D1AEA1A5E6DEB5874CC057F759A6EED78B281F28D68F6A65380506D7E6CBA173B854C6ADC53FC49C1595B

    EnableISPConnect = 0

    ISPConnectType = 0 [main]
    Description =
    Host = 172.18.4.22
    Host = 172.18.4.10
    AuthType = 1
    GroupName = xxxxxx
    GroupPwd =
    enc_GroupPwd = DDBC400B7B3D1AEA1A5E6DEB5874CC057F759A6EED78B281F28D68F6A65380506D7E6CBA173B854C6ADC53FC49C1595B
    EnableISPConnect = 0
    ISPConnectType = 0

    Thanks in advance

    Mikael

    You must configure the server "backup":
    http://www.Cisco.com/en/us/docs/security/vpn_client/cisco_vpn_client/VPN...

    The easiest way is to do it with the GUI.

    Sent by Cisco Support technique iPad App

  • Connecting two routers WRT54G2 to extend the signal

    I have available two routers wireless broadband Linksys G (WRT54G2), given to me by a family member. We use one of the routers by itself for some time, but have no adequate signal throughout our House. I decided it would be easier to design the floor plan of the House for you to see his situation compared with the rest of the House on the walls that do not. We have the HughesNet satellite internet which is on the roof just about the location of the modem and router at the bottom right of the image.

    What do you think would be the best location of the main router? I read it would be more centrally located, because the signal travels horizontally and vertically. I just bought a 100' Ethernet cable being the only one that we had what the HughesNet Installer provided us with which is about 4'. I initially thought I would be the cable from main router to the basement where the second router is placed since the signal there is about 1 in 3 bars on my iPhone. The signal on the floor in the ranges of the main room (room at the top in the middle of the image) of 3-5 off 5 bars on my laptop.

    I wanted to just put a post sooner rather than later to see what your views were on the location of the main router and I have to increase the signal.

    Let me know if you have any questions to a better response.

    I have updated the firmware on the main router.

    If you want to configure the router as an access point 2 then the connection will be LAN to LAN which means the LAN port of the router port main o the 2nd router's LAN... But before you connect to the main router.

    You should first connect the 2nd router to your laptop, go to the configuration page. Configure wireless settings it is firstly, ethier you set up another name and password is all up to you. Then change the IP address to a number of 192.168.1.x(any fera l'affaire) and disable DHCP... then after that connect to the main router.

  • Cisco RV042 VPN hub and spokes, connecting spokes question

    Hello

    I have a few Cisco RV042 router and VPN links them with a hub and spoke topology.

    Each speaks VPN works, they manage to connect to the platform.

    The hub can see each VPN active rays.

    A computer under the hub can connect to a computer in any talks.

    A computer under any talks can connect to a computer running the hub.

    Which works very well.

    Now, what I really need, is to connect computers under a RADIUS to connect to computers under another spoke.

    It don't work.

    Current configuration of LAN:

    HUB IP / mask: 192.168.0.1 / 255.255.255.0

    Spoke1 IP / mask: 192.168.1.1 / 255.255.255.0

    Spoke2 IP / mask: 192.168.2.1 / 255.255.255.0

    I was wondering if the Cisco RV042 can be configured to allow that and HOW?

    If we can not do, should what other router I use as a hub? Should I change the rays as well?

    Thank you and have a nice day

    Hope that this document can point you the right direction.

    https://supportforums.Cisco.com/docs/doc-12534

  • Cisco 877 + VPN Site to Site

    Hello

    I'm new im this forum.
    I've set up a Site VPN site with 2 Cisco 877.

    SITE A:

    Address IP Adreess public: static
    Internal IP Adrees: 192.168.0.XXX
    Mask: 255.255.255.0

    SITE B:

    IP address public Adreess: Dynamics
    Internal IP address: 192.168.2.XXX
    Mask: 255.255.255.0

    I managed to do a ping on both sides, but I can't access file shares, and could rdp on any server in site A, by the internal IP address.

    Fix, is the SITES A and B SITE startup configs.

    Could you please someone help me?

    Hi Marcos,

    Really happy to know that the problem is solved. There is no need to apologize. Please mark this message as answered if there is nothing more.

    Rregards,

    Assia

  • Logical remote connects to the MainStage but not Garageband?

    I have tried everything I can find to do remote logic to connect to the Garage band and none of it works.

    I can get my iPad to connect to MainStage without any problem. Open the first time I run logic remote with Garageband

    I get the prompt to allow the connection and pair the remote but from there it happens just to expire and I get the message...

    'Logic remotely was unable to connect to the selected Mac. If this is the first time that you connect logic remotely, you must confirm the connection on the selected Mac. " I did this step. I have the latest version of MainStage and Garageband available from 26/01/16.

    My firewall settings are turned off completely,

    I removed preference files and rebooted several times.

    I have the same problem between two different Macs and on two different networks.

    Thanks for any help you may have.

    Looks like you are trying to connect to Go with a Pro iPad or iPhone (which is not taken in charge)?  The configuration required for the logic of remote 1.3:

    The system configuration required

    Requires iOS 9.1 or later

    iPad support requires Logic Pro X 10.2.1 MainStage v3.2.3 or GarageBand v10.1

    iPad support Pro requires Logic Pro X 10.2.1 or MainStage v3.2.3

    support iPhone requires Logic Pro X 10.2.1

    Note that GarageBand is currently only supported on iPad.  I expect that will change with the next update to GarageBand, but I don't know about you.

  • Multimedia file sharing only works if the two devices are connected using the same protocol

    So I'm frustrated!

    I spent an hour trying to get my Windows 7 computer to share my music with my XBox 360. I have two machines on my network, one connected by Ethernet to the router and the other connected by WiFi. I tried everything I could find online to get the WiFi connected machine appears in the "Music Player" on my XBox system - follow all sharing, make sure that my router has UPnP, restarted a bouquet of services, etc..
    Nothing! During this time, my machine connected to Ethernet was watching me in the face. He has appeared on the XBox without problem. I started to compare the settings on both machines and found no difference.
    Then I remembered, boredom, I had setting up WiFi sync for Windows Phone my wife. In fact, it was this session of troubleshooting that lead me to put this machine on the WiFi in the first place! Seems to set up WiFi sync, Windows Phone and the target of the machine must be, not only connected to the same network (obviously), but for some reason any the $ @$ crazy, both connected by WiFi. I just connected this computer by WiFi - not happy, a faster speed with my wired connection - and immediately fixed the problem itself.
    Then, remembering that, I moved my XBox WiFi network and - presto - my second machine appears without a problem.
    My question is... WTF! ???
    This is ridiculous - this is the same network! Why things must be connected using the same protocol?

    Hi, Edward Petersen,.

    Please contact the Microsoft community. I'll help you solve the problem with sharing music using media sharing.

    Some routers isolate the cable connections and wireless, you can check if you have the option in the configuration of the router to share media

    If the problem occurs, you can contact the router manufacturer for assistance.

    Hope this information helps. If you need help with Windows, simply reply that we will be happy

    to help you.

  • Remote connection rearranges the desktop on the work computer icons

    Hello

    I arranged the icons on my desk in a medium spesific. After I connect to the computer work from home, all the icons on the computer work go to the left screen (auto arrange?) and I have to drop every time (I have many of them on the desktop). How can I fix it? Thank you. Joybar

    Hello Joybar,

    Please ask your question in the Remote Desktop Services forum in TechNet as they deal with questions of distance there.

    See you soon

  • Cannot get remote connection to the computer or phone

    Original title: sentinel160GB Network CCTV connection

    I have the apparently mandatory sentinel160GB CCTV and the system works OK, but for the life of me I can't get the remote to my PC or telephone connection to the or see same DVR?  Help

    Hello

    1. don't you get error message when you try to get the remote connection?

    2. you talk about Digital Video Recorder?

    3. were there any changes (hardware or software) to the computer before the show?

    Reply with answers to help you in a better way.

    Click on the below mentioned link to get an idea on how to ask for suggestions in this forum.

    Suggestions for a question on the help forums

  • Desktop sharing, allow two users to connect on the same desktop

    Does anyone know if view Horizon be configured in such a way that:

    -Two (or more) users can connect on the same desktop

    -vSGA can still be used

    The reason why I ask, is that in my area there is a request for collaboration in which two people on different locations want to go through a 3D medical treatment plan and discuss on the phone. Documentation of the Horizon does not say that it can, but it does not say that he can't.

    There is nothing on the Horizon that would in native mode.  You must use a product type to have two people viewing the same third party screen sharing office.

  • Laptop does not connect to the internet, office. Both use the same router. Tried troubleshooting, does not. Help!

    I have a desktop computer and a laptop. Both use the same router. The laptop does not connect to the network, but the office has no problem. My wireless adapter on the laptop is on, I tried troubleshooting. I tried to turn it off for 30 seconds then restart him. But nothing is resolved the problem. Any ideas would be helpful! Thank you

    Hello

    Maybe this can help.

    These steps and tell us where is the breaking point.

    Check the Device Manager for the wireless card valid entry.

    http://www.ezlan.NET/Win7/net_dm.jpg

    If there is no valid entry, remove any entry from fake and re - install the drivers for the wireless card.

    Check network connections to make sure that you have a network icon/entry wireless connection, and that the properties of the icon (right-click on the icon) are correctly configured with the TCP/IPv4 protocol in the properties of network connections.

    http://www.ezlan.NET/Win7/net_connection_tcp.jpg

    Make sure that if there is Wireless Utility a utility vendor is not running with the native Windows wireless utility.

    ----------------

    Make sure you firewall No. preventing / blocks wireless components to join the network.

    Some 3rd party software firewall continue to block the same aspects it traffic Local, they are turned Off (disabled). If possible set up the firewall correctly, otherwise totally uninstall and get rid of its remaining processes that permit the own local network traffic flow.

    If the 3rd party software is uninstalled, or disables, make sure Windows native firewall is active .

    ---------------------------

    Stack TCP/IP work should look like.

    Right-click on the wireless network connection card, select status, details and see if she got an IP address and the rest of the settings.

    http://www.ezlan.NET/Win7/status-NIC.jpg

    Description is the data of the card making.

    The physical address is MAC of the card number.

    The xx must be a number between 0 and 255 (all xx even number).

    YY should be between 0 and 255

    ZZ should be between 0 and 255 (zz all the same number.)

    The date of the lease must be valid at the present time.

    * Note 1. IP that starts with 169.xxx.xxx.xxx isn't valid functional IP.

    * Note 2. There could be an IPv6 entries too. However, they are not functional for Internet or LAN traffic. They are necessary for Win 7 homegroup special configuration.

    ---------------------------------------------------

    A message in the small window that says connected wireless doesn't means that you are really a valid functional connection.

    Above everything is OK, you must be able to connect to the router.

    Connection to the router means that you can enter the IP of the router base in an address bar in one go, being able to connect and configure the router menus see.

    If it doesn't connect to the router, journal newspaper from any computer that can connect to the router wirelessly with a wire, disable wireless security, make sure that the wireless SSID broadcast is enabled and try to connect with no. wireless security.

    Enable security wireless after you eat to make a functional connection.


    Jack-MVP Windows Networking. WWW.EZLAN.NET

  • Overview of VMware View Client 2.1 crash during the connection to the pool offices

    To Horizon View Client updated to version 2.0 2.1, whenever I try to connect to the pool of offices after the connection to the login server, it remains on the 'connection '. "message for a bit before it crashes. This has been the case regardless of which server the connection that I use. Are there others who is to have this similar problem with the new version of the OS X client?

    Thank you, solgae. Team may have found the cause, so there is a patch which includes patches, could help you to check?

    1. backup of the libpcoip_client.dylib in the directory "/ Applications/Horizon of VMware View Client.app/Contents/PlugIns/PCoIPVMView.bundle/Contents/MacOS.

    2. replace by the task libpcoip_client.dylib.

    3. If this patch does not work, please provide the journal.

    -zhanglin

  • Unable to connect to the cc office

    I can't connect to my creative cloud account, this is the same info I connect with the web, but I can't connect with office cc.

    Please check: cloud creative connection errors

    Creative cloud applications ask me to connect whenever I run an application

    Concerning

    Baudier

  • Cannot connect to the 'Available' office says event DB empty pool.

    I have a test pool configured with a single available desktop computer in it. This is to test the transition for users of 14/14.

    I am able to connect to the desktop very well with a single user, how I log out of the desktop computer and disconnect the client from the view. When I reconnect the VCS, I connect under a different name, but cannot start desktop for this pool.

    The client displays - "this destkop currently has no source of funds available...". ». When I check the DB of the event for the pool, I see the failed attempts and the error indicates that the pool is empty. However, looking at the pool, the desktop shows available.

    I tried to contact VMWare, but Tech Support led me to pre-sales and pre-sales had no idea what I was talking about.

    If you assign the user to a desktop computer that still looks like a pool of dedicated linked automatic cloning.   A floating pool is what you're after which means that each virtual machine is available for use by anyone who connects.

Maybe you are looking for

  • transparent filter problem

    I regularly visit a Web site were members of the community can submit/attach photos with each submission blogfeed on their own profile page. When more then 2 photos are submitted/joint there are only 2 thumbnails shown and one line "and x" (x = quant

  • Cannot connect canon pixma mg3222

    I download the driver from canon website (I chose the wick of the right version 8.1 window 64)I connect my printer to my computer by USB cable (USB cable is not broken)As a first step, that it says printer detected and then a few minutes later, it sa

  • Real Internet performance? -Internet speeds are slower than expected when streaming videos or loading pages

    With my "N" external WIFI adapter connected, signal quality indication is that v. GOOD to EXCELLENT (4-5 green bars) and at up to 54 Mbps speed most of the time.  But when I ran a test on a Web site, the result was 0.6 Mbps.  I am able to surf the In

  • Frozen printer HP C309a

    My printer has frozen and does not allow me to scan, print, etc.  I unplugged the power cable during 60 seconds to try to reset and it still does not work.  When I try to turn off the printer using the power button / stop, Flash them to the printer a

  • How do I uninstall genieo

    Genieo appears when you access the internet.  trying to get rid of him.  It is not listed in Control Panel uninstall