modem router VPN hardware firewall - config possible?

We have 2 remote employees having difficulties with their VPN client software turn off/on.  We were preparing to spread the VoIP phones up to them and won't open our internal PBX network.  I would like to make 1 stone 2 strokes by providing a hardware VPN to each employee to establish a gateway 2 IP Sec VPN gateway between their home and the main office.  This should provide a more reliable connection and throughput high, all allowing the VoIP phone to connect through the VPN tunnel, thus keeping our secure internal PBX.  So far so good.  From what I can tell the rv120w, rv220w or cisco asa 5505 would do the trick.  Now the difficulty - I don't want any personal traffic (Netflix streaming, whatever) from home, traveling through the VPN tunnel.  So I would like to allow the employee maintain their own network staff, and within the personal network the hardware VPN device providing a secondary network would use the VPN tunnel.

It would look like this:

Web:

wireless router: (dynamic public IP 192.168.1.x private subnet)

personal computer

laptop

television network, etc.

hardware VPN device: (192.168.1.1 IP WAN, private subnet 192.168.2.x), IPSec VPN tunnel to the main office (must use internal DNS main office)

Phone VoIP (192.168.2.1)

Desktop computer (192.168.2.2)

Seems simple to me, but concerned about through two NAT.  Looks like this would be preferred for a desktop home configuration that shares a single internet connection.  Found an old Cisco product that was aligned to this specific scenario - the Cisco VPN 3002; but it is the end of life.

I'm also a bit wary of different routers Cisco RV line poor consumer reviews.  Whereas the Zyxel Zywall USG 20 as an alternative.

The split of RV120 and RV220W site-to-site VPN tunnel support, so all traffic "cluttered" would remain local for home networks while the VPN traffic that's exactly right.

You can consider installing one of the routers listed above in areas home to avoid the double-NAT or additional purchases. The VPN device does not practice given that the expense of a gateway to gateway VPN router is fairly inexpensive.

-Tom

Tags: Cisco Support

Similar Questions

  • Cannot connect remotely via VPN since installing the new modem/router

    Can anyone help please. Since the acquisition of a new router / modem I can no longer connect via VPN to my work PC remotely. It comes in I receive the error message. Can someone tell me if I need to change the settings for the new modem / router to access?

    Hello Joanna,

    Here are the steps you need to do first:

    1. Off static IP for my server and let the router assign IP address and changed the IP address of the port forward.
    2. Check the IP address because obviously, that changed when you plugged into the router again.
    3. Updated to the latest firmware for the router and NIC.

    For more detailed troubleshooting you can refer to this link: troubleshooting common VPN related errors.

    Let us know how it goes.

  • Install RVS4000 with ADSL modem / router combo?

    I am trying to install a VPN RVS4000 router in our small office.  My problem is that AT & T has installed a Netopia 3347-02 combination of DSL Modem / Router.  So I can not connect the RVS4000 directly to a dsl modem, the only access I have is on the side of the Netopia DSL.  When I tried to affect the rating the RVS4000 the same subnet as our local area network WAN, he wouldn't let me do.  I tried to adjust the side Lan side of the (same) RVS4000 Wan and the Netopia slightly different subnet, but that no longer works.  The only way I can get internet access through two devices is to connect the side Lan of the Netopia alongside the RVS4000 Lan, but that circumvents the VPN, correct?  The reason why I bought the RVS4000 is to the VPN.  Is it possible to configure the RVS4000 in this situation, or should I get a plain old DSL modem without router integrated?

    Thank you, Scott

    Scott,

    It should not need to get another device to use the VPN of the RVS4000 features.  To set up the equipment you have, you just place the Netopia DSL router in the 'bridge' mode  This will then allow you to connect the DSL router to the WAN (internet) port on your RVS4000.  Once in bridged mode, your WAN on the RVS4000 port will receive its IP address of AT & T, which will then take over the functions of routing and allow you to use this router VPN functionality.

    If your DSL provider uses PPPoE, you will need to select "PPPoE" on the RVS4000 WAN configuration page, and then enter the user name and password in the RVS4000 so that it can authenticate and obtain an IP address from AT & T.

    To put the Netopia DSL router to "bridge" mode, I included a link to one of their user's guides.  The section to put it in Bridge mode starts on page 107.

    http://www.Netopia.com/support/hardware/SoftwareUserGuideV761-CLSC.PDF

    Thank you

    Darren

  • Find the best modem / router configuration.

    Be 'stuck' with wimpy CenturyLink DSL service (read 4 Mbps), I try to get every ounce of speed that I can with my configuration of a Wi - Fi. The material in question is a Technicolor C1100T modem/router/WiFi and a current model Apple AirPort Extreme.

    The question is, whose Setup is faster:

    [A] C1100T in Bridge Mode (i.e. modem only) > AirPort Extreme all the PPPoE router / WiFi work, or

    [B] C1100T modem handling / PPPoE - router work > AirPort Extreme in Bridge Mode, just do a Wi - Fi connection?

    The C1100T goes only up to speed "n" where the Airport manages 'ac '. So my thought is the configuration 'B' may have an advantage. I thought I would ask the collective wisdom of the community of Apple before playing with all the related parameters. Speaking of which, overall the Apple hardware, the PPPoE "Account name" is always shown as formatting as an email (e.g. [email protected]) address. In the C1100T admin settings, the PPP username (PPPoE) is in the format ABC123456789. Formats in the case of AirPort Utility parameters (i.e. it will accept Qwest format)?

    As long as we talk about press speed, are there any other tricks, for example by selecting the best channels 2.4 GHz and 5 GHz (assuming that one is faster than the other)? Literally, living in the Woods, there is no one else around with any related Wi - Fi signal to interfere.

    As always, thanks for the help!

    The question is, whose Setup is faster:

    [A] C1100T in Bridge Mode (i.e. modem only) > AirPort Extreme all the PPPoE router / WiFi work, or

    [B] C1100T modem handling / PPPoE - router work > AirPort Extreme in Bridge Mode, just do a Wi - Fi connection?

    Not trying to be cute here, but if the products work correctly, the results will be the same.

    However... speed could be one thing and another reliability.  Setting PPPoE Apple are old and is not known for their reliability.  As you know, in theory, you want the device that provides identification of connection information to connect directly to the Internet service.  This would mean that have C1100T PPPoE c would probably be a better way to do things, reliability wise.

    The C1100T goes only up to speed "n" where the Airport manages 'ac '. So my thought is the installation of 'B' may have an advantage

    Not in terms of connection to the Internet.  If you are thinking about speed on your local network, the airport would be the way to go. Just ignore the C1100T, or turn off the wireless feature if you feel that it can interfere with wireless the wireless AirPort.

    Speaking of which, overall the Apple hardware, the PPPoE "Account name" is always shown as formatting as an email (e.g. [email protected]) address. In the C1100T admin settings, the PPP username (PPPoE) is in the format ABC123456789. Formats in the case of AirPort Utility parameters

    No, but I would not use PPPoE over airport.  If you have tons of time and be ready to experiment and put up with connections, more broken then you could try PPPoE on the airport.

    As long as we talk about press speed, are there any other tricks, for example by selecting the best channels 2.4 GHz and 5 GHz (assuming that one is faster than the other)?

    N ° the most convenient airport at startup, it automatically scans to select a channel that meets the criteria set by Apple engineers. As soon as it finds one, he chooses.

    If someone really knew what could be the real criteria you had tons of time on your hands, in theory, it may be possible to guess and select a channel as good as who will pick up the airport.

  • IOS router + VPN + ACS downloadable IP ACL

    I want to use the function "Downloadable IP ACL" 3825-router VPN (OI 12.4 T) in combination with a CBS.

    In many documents and discussions, I read that it is possible to use the DACLs on "devices Cisco IOS version 12.3 (8) T or higher.

    Authentication and authorization by the AEC works and the device gets some settings of the av-pair-feature.

    I have tried several things to apply the DACL as the use of av pairs or ACS "Downloadable IP ACL" function, but nothing works.

    In the debug log, I see that the av pair is transmitted to the device, but it is not used.

    --> Can you tell me, is it possible to use the DACLs on the IOS routers?

    --> How does it work? What can I change?

    --> Is there a good manual to apply it?

    Thanks for your help!

    Martin

    It would be useful to know the PURPOSE of what you're trying to do...

    AFAIR client config mode requires no ACL for filtering short tunnel split ACL... and I have no way to test right now.

    If you want to allow or not some clients access to certain subnets why not investigate tunneling ACL and vpn-filter in combination with ACS split will rather than for the DACL.

  • Airport Extreme and Broadband Modem/Router

    I have my Airport Extreme (5th generation) plugged into a Broadband Modem/Router combo. I would like to have both able to use their wireless capabilities. The Airport Extreme has been previously connected to a Modem broadband all my IP addresses came by Airport Extreme (192.168.2. *). With the New Modem/Router combo broadband, it uses 10.0.0 * so I would be able to use Airport Extreme to add the 192.168.2. * While having the 10.0.0. * the Broadband Modem/Router combo.

    Is this possible and, if so, how do I configure Airport Extreme to do?

    Normally, you don't want two devices on the same network as the two try to act as routers to the same network. Which will produce conflicts of IP addresses... which can possibly be addressed... and a Double NAT problem, which cannot.

    The Double NAT error can cause a number of unpredictable issues... things like the problems of communication between the devices on the network, slow navigation... or, not navigation in the case of certain websites, Internet access slower, to name a few.

    Yes, some users may get away with a Double NAT on a single home network, but unnecessarily complicating things over a network is normally something you want to avoid.

    We do not recommend it, but if you really want AirPort Extreme for use range 192.168.2.x however, you can easily make this change using AirPort Utility. If you are not sure how to do this and need help, then we will need to know which version of AirPort utility you are using.

    To find, open AirPort Utility, and then click the menu of AirPort Utility in the far left of the screen corner. Click on about AirPort Utility to see what version you have and post back with that info.

  • installed a new modem router now I can't access my emails with my usual password.

    I have installed a new modem router, a Netgear D6300, now when I press the messages button get on my email account thunderbird, he invited my password which is normal. But when I enter my password that worked all the time it tells me that it is the incorrect user name or password. Of course, the implementation of my new router has changed something, please help.

    almost all Netgear routers have a firewall. Then log into the router. username Admin and password is probably password. If not these days they printed on the bottom of the router. Check the ports used for mail are not blocked.

  • I installed a new century link Modem/Router... Fast charge of Firefox, but some phrases & words groupings appear washed out, fuzzy, not clear

    When reading web pages... a lot of lines is unclear, dull... they appear washed out. We just replaced our old century link modem/router with their new version of [PK5001A]. When I run the cursor over the wrong guy... looking she usually sharpens, although the effect created is a very sick feeling in your eyes. Why is this flaky looking for type occurring and what can do us about it?

    Is the problem with some web sites? Most? All the?

    Start Firefox in Safe Mode {web link}
    While you are in safe mode;
    Press < Alt > or < F10 > to display the toolbar.
    Followed;

    Windows; Tools > Options
    Linux; Edit > Preferences
    Mac; name of the application > Preferences

    Then Advanced > General.
    Find and stop using hardware acceleration.
    Then restart.

  • Problems with AirPort Extreme and Qwest Modem/Router.

    I have a Qwest ActionTec 1000 DSL VDSL2 gateway and want to disable the functions of router wireless and those through direct AirPort Extreme. I know that in the Modem I have to disable the functions of addressing and turn them in the AirPort Extreme to avoid address conflicts, but what are the settings I need to change in both devices? And what is "A Transparent bridging" on the side of the modem?

    But what are the settings I need to change in both devices?

    Sorry, we can't help on the settings for the modem/router, because it would be a question of Qwest as to if this is even possible and if so, if Qwest will support this type of installation. Sometimes the ISP lock modem/router settings, and although it seems as if you can change the basic configuration of the unit, you can really.

    Yes, it is possible that another user of Qwest has done with the same modem/router you have and an AirPort Extreme... and may know the answer... but the chances of the person who holds this information also to see this post are slightly above zero. But, I guess it's possible.

    If the modem/router can be configured to operate only as a simple modem, then the next step would be to get your Mac connected directly to the modem to test the connection in this way. If Qwest is going to help you, they will do it no doubt with your Mac connected directly to the "modem" as well.

    Once you know the exact details of the PPPoE authentication to establish a connection, these parameters can be transferred to the AirPort Extreme and removed from your Mac. To do this, you reset the AirPort Extreme back to default and then put settings in place again. The installer should detect the PPPoE connection and then ask for your login information.  After this, the correct settings apply to AirPort Extreme during the installation.  You can still use the same wireless network name and password you used before if you wish, or set up a new network name and password.

    PPPoE on the routers of the airport, at least in my experience, was not a reliable way to connect when I tried this in the past, but you don't really know how well... or even if... it will work until try you it. Unless you really want the airport to distribute IP addresses to devices on your network, things would be a lot more simple if you went ahead and used the modem/router "such what" and then let the airport works in Bridge Mode to transfer information in connection with network devices.

    When you have the modem/router converted to act as a simple modem and made a successful connection using your Mac connected directly to the "modem", post back and we can help with the configuration of the AirPort Extreme if you need more advice.

  • Where is the registry entry for the tools-&gt; advanced-&gt; general-&gt; browsing-&gt; Use Hardware Acceleration where Possible

    Anyone know if this can be enabled/disabled in the registry and where it is?

    Tools-> advanced-> general-> Browse-> use hardware acceleration where Possible

    So in order to change the preference via a script, I found information that needed to be changed in "subject: config", "thanks cor - el", then he ran into a batchfile as follows

    Example A - it is run once and added to the current file prefs.js, but maybe it can stay alone.

    CD /D "% APPDATA%\Mozilla\Firefox\Profiles\*.default".

    Set Ffichier = % cd

    echo user_pref ("layers.acceleration.disabled", true); > > "% ffile%\prefs.js".

    Set Ffichier =

    CD %windir%\System32

    Example B - this is run and creates a new file called user.js or adds to the existing one. This file has a higher priority to prefs.js

    CD /D "% APPDATA%\Mozilla\Firefox\Profiles\*.default".

    Set Ffichier = % cd

    echo user_pref ("layers.acceleration.disabled", true); > > "% ffile%\user.js".

    Set Ffichier =

    CD %windir%\System32

    Example C - this replaces user.js each time, by changing the number of ' > ' change it to append to crush.

    CD /D "% APPDATA%\Mozilla\Firefox\Profiles\*.default".

    Set Ffichier = % cd

    echo user_pref ("layers.acceleration.disabled", true); > '% ffile%\user.js '.

    Set Ffichier =

    CD %windir%\System32

  • Unable to connect to the internet via a modem router - Satellite A200

    Thanks to Xardas, I was able to successfully install Windows XP Pro, but not everything is working as it should. Of immediate concern is my inability to connect to the internet (DSL) through the installation of the existing modem router that I use. How can I check that the ethernet drivers work? … My Satellite A200 does not - connect the appropriate port light does not illuminate.

    Oh yeh. I noticed that whenever I start (boot) a "Wizard" pane appears informing me that new hardware was found and that the drivers have not been installed but it doesn't tell me what the new material is! At the same time, there is a separate pane that announces that the drivers have not been installed correctly.

    Of course, I can use the computer as it is, but before letting my wife loose on this subject, I would like to get rid of anything that can give her cause to panic.

    Where are you Xardas?

    Check please the Device Manager and all the entries listed under network adapters. LAN card is listed there?

    Have you installed driver LAN?
    What A200 you exactly (A200-xxx)?

  • A100-306 & office via Modem/Router wireless connection: access denied

    I'm trying to file/printer sharing between my laptop A100-306 and office units.
    I used the Windows Wizard to create the internet/LAN connection.

    It has been a success with the connection internet (via Belkin 54 g Wireless Modem/Router), but my "Troarn" LAN does not seem to be recognized by the laptop.
    When I query, on the laptop, My Network places/computers view of the Working Group, the page is white!

    But when I question, the office, My Network places/View workgroup computers, computers are displayed. If I try, on the desktop, for connection access is denied.

    Someone at - it suggestions?

    Hello

    -Check if you have disabled the firewall on the laptop.

    -Be sure that each computer is placed in the same working group.

    -Check the TCP/IP protocol settings.
    If a computer has the IP 168.192.50.1 the other should for example has 168.192.50.2 and so on.

    -If you want access to all records, you must set the rights for sharing this folder.

  • Modem/router Netgear C3700

    Is it possible to connect a WiFi Nighthawk to my C3700 Modem/Router Netgear router to improve the speed of connectivity WiFi throughout my two-story condo. I tried an Extender nothing helps.

    Hello vintage1953

    Sorry the C3700 cannot be used as an access point.

    DarrenM

  • TWC Modem/Router-with Apple Time Capsule extreme

    Can someone find me on this configuration?

    I'm trying to improve the coverage of the WiFi in my house and I'm trying to do so via an ethernet connection to two Capsules of time separate Apple.  One is an airport Time Capsule 802.11n (3rd generation/Firmware 7.6.4) and the other is a Time Capsule 802.11ac Airport (7.73 firmware).

    I have a Time Warner cable wireless modem/router (Arris 860 has TG1672G). The configuration in the network for NAT settings is "RoutedWithNAT". I'm going out this modem/router via a ZyXel AV2000 HomePlug AV2 Powerline Gigabit Pass-Thru 2-port Ethernet Adapter (I have no ethernet strung in this particular room) in the AC of the Apple Time Capsule 802.11.  The configuration for that Time Capsule is Mode/Off/network wireless and network /Router Mode / Off (Bridge Mode).  The other Time Capsule has the same configuration.

    That is the question... is the right way to get faster WiFi?  I realize by using the Homeplug may not help my cause, but I have to guess that it is faster to go wireless two correct time Capsules?

    The issue I'm having is that it's slow and I can't understand why.

    Thank you for the kind words.

    I wanted to add a few things to this post...

    I tested out the ZyXel ethernet to my MacBook Pro and ran a Speedtest.  He retired.  Very fast.

    Here are the screenshots of my two time Capsules config and my modem/router from Time Warner.

    In the meantime, here is the speed I get via radio... pretty dismal.

  • Windows fax with modem/router wireless - HELP

    How can I add the free FAX from Windows program that comes with my netbook windows7?  I have a Siemens Gigaset Smartbox 604 wireless modem/router, but the choices are: 1) an internal modem, 2) an external analog modem, 3) a fax through the system administrator server.  What should I do? (Please answer ASAP)

    Fax from a computer, you must have an analog modem installed, internal or external.
     
    Reason: the fax machine at the other end is connected to a regular analog telephone line, not cable or a DSL line.
     
    Welcome to the Windows 7 Compatibility Center: section analogous modem...
     
     

    Mike Hall MVP - Windows Desktop Experience http://msmvps.com/blogs/mikehall/

Maybe you are looking for