SPA2102 and business VPN

I have a problem to connect to my VPN ATT customer.  My configuration--> Modem cable--> SPA2102 Linksys WRT54G-->--> computer.  My phone is plugged into the SPA2102 and computer WRT54G.  I don't lose internet connection or IP phone but intermintently lose the VPN connection causing to reconnect me every so often.  I removed the WRT54G Router and connected to the SPA2102 directly, same problem.  I removed the SPA2102 and connected directly to the cable modem, no problem, never lose the connection.  What configuration is required to enable a compatible VPN connection?  I opened the ports 500 and 4500 on the SPA2102 for UDP and TCP and still lose the connection.  My ATT journal has these entries DISCONNECTED UNEXPECTEDLY AFTER hh: mm ERROR 119.  All devices are configured to use the DHCP protocol. Any help would be greatly appreciated.

Open the following ports on the spa2102, 47-1723-50-500 and test again if the same problem will happen again. is it possible to use the static ip address instead?

Tags: VoIP Routers

Similar Questions

  • Conflict of IPSec between IPSec and business VPN tunnels

    I crushed a 2821 current c2800nm-adventerprisek9 - mz.124 - 22.YB8 at home with 2 gre IPSec tunnels for personal use, and my office will be held that a customer based IPSec VPN to connect to the corporate VPN.  My problem is that when I want to connect to the corporate VPN, I see packages being encrypted and sent, but I would have never received the return packets.  It seems that the IPSec VPN tunnels with IPSec from my office and router packages conflict trying to decrypt and gives this error.  (I removed the public addresses for anonymity)

    CRYPTO-4-RECVD_PKT_INV_SPI: decaps: rec would be package IPSEC a bad spi to destaddr = "myaddress", prot = 50, spi = 0xDB32344E (3677500494), port = "corpvpn".

    When I remove the card encryption off-side WAN router, my Office VPN works immediately.  I can change the configuration, either on the side of the IPSec GRE tunnels, but has no way for me to change any configuration on the corporate VPN.  Does anyone know of a workaround on the cisco router?  I can provide the running configs or view orders.

    The 2821 also performs NAT overload for internet access.

    Hello, Reed.

    1. try to remove the interface crypto map and add "protection... profile ipsec tunnel." "to your VTI:

    Crypto ipsec IPSEC profile

    solid Set trans

    int g0/0

    No crypto map card

    int tu1

    Ipsec IPSEC protection tunnel profile

    int tu2

    Ipsec IPSEC protection tunnel profile

    2. try to force your corpVPN to use encapsulation UDP instead of ESP.

  • problems of class ASA5510 dsl and business

    Here's my setup.

    Business class dsl modem with a static IP (100.0.0.1) connects to an asa5510.

    the ISP gave me another static routable ip address for the asa5510 and I configured the 5510 outside interface with this (100.0.0.2).

    I have also some machines behind the inside interface of the 5510. (172.16.1.0)

    All I want to do is let some ppl vpn inside network to make a diagnosis.

    I don't need someone inside to access the net, so no nat is necessary.

    I crossed the normal config vpn and remote vpn Wizard.

    However, by using the cisco vpn client, I am unable to connect.

    I ping the 100.0.0.1 interface, but is unable to vpn in.

    I think that there is no path of 100.0.0.1 100.0.0.2

    any suggestions?

    The group name must be EAT that is configured on the tunnel-group settings in your ASA. Do not "vgoradia", but what is configured on the SAA.

    And the password must be one that you have configured in the tunnel-group for pre-shared key parameter.

    tunnel-group EAT type ipsec-ra

    tunnel-group EAT general attributes

    address vpnpool pool

    Group Policy - by default-EAT

    tunnel-group EAT ipsec-attributes

    pre-shared-key *.

    Let me know how this pans.

    The rate of this post, if that helps.

    Thank you

    Gilbert

  • RT for Windows and Cisco VPN (AnyConnect) Solutions?

    Microsoft and Cisco are working together to ensure Cisco VPN is soon available for Windows RT?  I read a thread RT of Windows from Microsoft and Cisco VPN without seeing all the comments of Microsoft or Cisco.  Please notify.

    Hi Gabriel,

    The Microsoft Answers community focuses on the context of use. Please reach out to the business community of COMPUTING in the TechNet forum below:

    http://social.technet.Microsoft.com/forums/en-us/categories

  • How to activate Office Home and Business when the installed copies is only 3?

    I installed 3 copies of Office Home and Business installed on 3 existing computers. One of the computers has been damaged and I deleted all the programs installed on it and then it is up to the seller. Then, I bought a used computer and installed Office Home and Business on this computer. I tried to activate the installed program but I couldn't activate the program. I tried to activate by phone, but it says that my copy activation exceeded 3 authorized copies. This is not correct. How can I get the program active?

    Office Home and Business cannot be installed on a single computer (only Home and Student can serve for three computers), you need two product keys more purchase. However if you 3 keys, one for each computer and then try the following:

    Microsoft Office Activation number:
    http://support.Microsoft.com/kb/950929

    Activate the 2007 Microsoft Office programs
    http://Office.Microsoft.com/en-us/SharePoint-Designer-help/activate-Microsoft-Office-programs-HA001233434.aspx
    (See telephone activation)

    Activate Microsoft Office 2010 products
    http://Office.Microsoft.com/en-us/SharePoint-workspace-help/activate-Microsoft-Office-programs-HA010354227.aspx

    Older version of Office: Activation and registration of a Microsoft product
    http://support.Microsoft.com/?kbid=326851

    = Other options =.

    Trial versions
    http://Office.Microsoft.com/en-us/project-help/convert-a-trial-version-of-an-Office-2010-suite-or-program-to-a-full-retail-version-HA101886436.aspx

    http://Office.Microsoft.com/en-us/buy/convert-your-trial-to-a-full-product-version-HA101812668.aspx?CTT=1

    Errors of valid product key in Microsoft Office (2010)
    http://support.Microsoft.com/kb/2002262

    Type errors product key invalid that occur in Microsoft Office 2007 or 2003
    http://support.Microsoft.com/kb/2549291

    Phone activation: http://office.microsoft.com/en-us/sharepoint-workspace-help/activate-microsoft-office-programs-HA010354227.aspx
    Activate by using the telephone
    You can telephone an Activation Center and activate your product with the help of a customer service representative.
     
    Important  
    Phone numbers of activation do not appear in this article, because there are a lot of numbers, and the correct number for you depends on several factors. Microsoft software can be obtained under various licenses, including individual retail licenses, original (OEM) licenses, and volume licenses OEM. Phone numbers vary by product license and country/region. In step 2 of the Activation Wizard, use the phone number provided to contact the Microsoft Activation Center.

    Telephone activation may take longer than activation through the Internet. You should be at your computer when you call, and you should have your software product key.

    Frequently asked questions about Office Activation Wizard and about features in Office 2010 and Office 2007 programs view programs
    http://support.Microsoft.com/kb/927921

    J W Stuart: http://www.pagestart.com

  • Why can't I install Turbotax 2010 Home and Business in XP?

    Several months ago, I installed Turbotax 2010 Home and Business in XP Pro and set up two returns. A few weeks later, I went back and TurboTax would not. Thinking that the files have been corrupted, I uninstalled TTH & B and tried to re - install from the CD, only to receive error messages. So I tried to use the cleanup tool, which partially worked, but I still get error messages. Other things I've tried only to get the error Stops include:

    1 clean the registry both manually and with the cleaning tool
    2. clean the files .net (3.5 and below)
    3 reinstall XP
    4 reinstall MS Installer.
    5 copy the disc on my desktop and install - always get error messages.
    6. cancellation of registration and record msiexec.exe
    7 detection and cleaning with StopZilla Reg Cure and PC Health Advisor (which is SUPPOSED to fix)
    8 Mode installation without fail, at the command prompt and in other modes
    9. other methods

    If you can help, I would be very happy.

    What are the error messages?  Word for Word, please.

    What "cleaning tool" specifically?  What is "partially worked?  How could you say this partially worked mystery cleanup tool?

    • #1, second part, of least not such a great idea - even if your machine...
    • #2, which means "cleaning"?  Versions of the .NET Framework are all independent.  Just because you have later does not mean that you have all the versions you need.
    • #3, that * you * average by reinstalling?  Repair?  Or real format and install?
    • #4, OK...  You must have had a reason for this?
    • #5, interesting - approach and yet you still don't give error messages?
    • #6, OK...  You must have had a reason for this also?
    • #7, I have no words to #7...
    • #8, okay - I can see which ones are something to try...
    • #9, the #9 was really necessary to add?  * smile *.

    What you say about intuit?
    http://TurboTax.Intuit.com/support/

    As it seems your entire number around their product centers, which help you got on their part?  Given you didn't mention (and you were detailed enough) get help from them - I suppose you did this road for some reason any?

    If you are running their "System Check" tool, you can copy and paste the results presented here?
    http://TurboTax.Intuit.com/support/IQ/install-product/TurboTax-2010-system-requirements/GEN12939.html
    (Specifically: https://turbotax.intuit.com/support/detect/index.jsp )

    The results of the example:

    Operating system: Windows
    Version of the operating system: 7 (x 64)
     
    Web browser: Internet Explorer
    Version of the Web browser: 8.0
     
    Status of JavaScript: Activated
    Flash version: 10
    Screen resolution: 2560 x 1600
    Popups: Popups allowed
     
    User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729 .NET CLR 3.0.30729; Media Center PC 6.0; NET4.0C; InfoPath.3)

    Past through their list of common interest issues?
    http://TurboTax.Intuit.com/support/IQ/install-product/Windows-Installer-and--NET-errors/SLN12216.html

    Specifically their installation problems?
    http://TurboTax.Intuit.com/support/IQ/install-product/Troubleshoot-installing-and-running-TurboTax--Windows-/GEN12454.html

    HTH

  • Problem software Checksoft home and business

    just purchased Checksoft Home and Business and the message I get is: MDAC 2.8 RTM is not compatible with this version of Windows. All of its features are currently part of Windows.  I have no idea of what I need to do

    You start by contacting the Checksoft support. This has absolutely nothing to do with Windows Update.

  • Cisco and Checkpoint VPN clients on a single PC

    Hello

    I'm in the following fix:

    I had used customer Checkpoint SecuRemote 4.1 SP - 5 VPN in the past.

    Now, I have installed the Cisco VPN client version 4.0.4 on my PC to access IPSec VPN for the PIX in our headquarters.

    According to Cisco VPN release notes http://www.cisco.com/univercd/cc/td/doc/product/vpn/client/rel404/404clnt.htm#wp1346340 , it should be possible to have clients both Cisco and Checkpoint VPN installed on the same machine.

    But I am not able to connect to my PIX, I receive the following error message:

    "Secure the complete VPN connection locally by the Client.

    Reason 403: failed to contact the security gateway. »

    When I'm looking for signs of PC control-> system-> hardware-> device Administration-> network cards, I can see Cisco Systems VPN Adapter disabled.

    After you activate manually, I always get the same error when you try to connect to the Cisco VPN client.

    After PC restart the Cisco VPN adapter is disabled later.

    I tried to uncheck Check Point SecuRemote form my Dial-up connection (bypassing CSCea31192 of bug, but the bug does not affect NAT - T connection which I use).

    I noticed the same situation on three different computers, one running Windows XP, both running Windows 2000.

    After uninstalling the client Checkpoint completely (including Windows registry manual removal), the Cisco VPN client works very well.

    It seems to me, therefore, that there is a profound mismatch between Cisco and Checkpoint VPN clients.

    Does anyone know of a workaround?

    Thank you

    Milan

    We had the same problem with some of our users who need to use the two clients to connect to customer sites.

    If I remember the cisco client does not start automatically, but the client of checkpoint 4.1 don't.

    We by-passed by deleting the registry entry point control that starts the client at startup. fwenc.exe is the entrance and it is in

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

    After that make a shortcut to the executable file that is stored in the directory \bin to relevant checkpoint on the client (it is different from NT & 9 client x) and then only start when it is necessary.

    Hope that's a help

  • Site2Site and remote VPN

    I have a site2site between PIX506 and 877 router VPN. Site A has PIX506 and Site B router a in 877. I configured site2site VPN and it worked fine. I also configured remote VPN on PIX 506 so that the remote user can access A site. But when I configure remote VPN on PIX506 site2site VPN works and both sides can ping each other. But site B users cannot access any resource network or application of the SiteA while site A can access resources of site B. After removing remote VPN site configuration B can access the resources of the Site I joined the configuration of the two sites. Someone help me please site2site and remote VPN work at the same time.

    Please forgive me for not reading every line.

    an add-on quick about the pix configuration:

    change "isakmp key * address 213.181.169.8 netmask 255.255.255.255" at "isakmp key * address 213.181.169.8 netmask 255.255.255.255 No.-xauth No. config-mode.

  • ASR1K and SSL VPN

    I'm having trouble finding information on SSL VPN for ASR1K, when we bought the boxes told us that SSL VPN was on the roadmap of the software, but that was back in 2010 and now I can not find anything nor can I get the right information.

    Does anyone have a recommendation on what to do or who to ask?

    PLS, contact your Cisco account manager as he or she would be able to provide additional information.

    There is normally a long list of features to add to the product, and SSL VPN is one of them who was asked to appear on the ASR. However, depending on the needs, it might be on the top of the list of the road map, or to the bottom of the list. Your Cisco AM should be able to get information from the product team.

  • WebVPN and remote VPN access

    Hello

    Is there a difference between WebVPN and remote VPN access or they are the same.

    Thank you.

    access remote vpn consists of

    -IPSEC VPN remote access. It is part of the ASA, no permit required, requires pre-installed Client from Cisco VPN IPSEC on PC

    -with AnyConnect SSL VPN remote access. It requires licensing of SSL VPN on SAA. AnyConnect client can be installed automatically on the PC with the launch of web.

    -with Essentials AnyConnect SSL VPN remote access. Beginning with ASA 8.2 (1), almost license $ 0. It's the same AnyConnect client as in the previous article, but it cannot be installed automatically with the launch of web. It must be previously installed as of Cisco IPSEC VPN client.

    -webvpn aka clientless vpn. It is a portal HTTPS which allows HTTP connections, file sharing, telnet, RDP and much more (with smart tunnels) resources without having to install a real client on the PC. It requires licensing of SSL VPN on SAA. It cannot be used if "AnyConnect Essentials" license is activated on SAA after 8.2 (1)

    Kind regards

    Roman

  • PIX and ASA static, dynamic and RA VPN does not

    Hello

    I am facing a very interesting problem between a PIX 515 and an ASA 5510.

    The PIX is in HQ and has several dynamic VPN connections (around 130) and IPsec vpn remote works very well. I had to add a PIX to ASA L2L VPN static and it does not work as it is supposed to be. The ASA 5510, at the remote end, connects and rest for a small period of time, however, all other VPN connections stop working.

    The most interesting thing is that ASA is associated with the dynamic map and not the static map that I created (check by sh crypto ipsec his counterpart x.x.x.x). However, if I make any changes in the ACL 'ACL-Remote' it affects the tunnel between the PIX and ASA.

    Someone saw something like that?

    Here is more detailed information:

    HQ - IOS 8.0 (3) - PIX 515

    ASA 5510 - IOS 7.2 (3) - remote provider

    Several Huawei and Cisco routers dynamically connected via ADSL

    Several users remote access IPsec

    A VPN site-to site static between PIX and ASA - does not.

    Here is the config on the PIX:

    Crypto ipsec transform-set ESP-3DES-ESP-SHA-HMAC-IPSec esp-3des esp-sha-hmac

    Dyn - VPN game 100 Dynamics-card crypto transform-set ESP-3DES-ESP-SHA-HMAC-IPSec

    Crypto dynamic-map Dyn - VPN 100 the value reverse-road

    VPN - card 30 crypto card matches the ACL address / remote

    card crypto VPN-card 30 peers set 20 x. XX. XX. XX

    card crypto VPN-card 30 the transform-set ESP-3DES-ESP-SHA-HMAC-IPSec value

    VPN crypto card - 100 - isakmp dynamic Dyn - VPN ipsec

    interface card crypto VPN-card outside

    crypto ISAKMP allow outside

    crypto ISAKMP policy 10

    preshared authentication

    3des encryption

    md5 hash

    Group 2

    life 86400

    crypto ISAKMP policy 65535

    preshared authentication

    3des encryption

    sha hash

    Group 2

    life 86400

    access list ACL-remote ext ip 10.0.0.0 allow 255.255.255.0 192.168.1.0 255.255.255.0

    Thank you.

    Marcelo Pinheiro

    The problem is that the ASA has a crypto acl defined between host and network, while the remote end has to the network.

    Make sure that the acl is reversed.

  • WebVPN and remote vpn, ssl vpn anyconnect

    Hi all

    Differences between webvpn and remote vpn, ssl vpn anyconnect
    All require a separate license?

    Thank you

    Hello

    The difference between the webvpn and SSL VPN Client is the WebVPN to use SSL/TLS and port

    send through a java application to support the application, it also only supports TCP for unicast traffic, no ip address

    address is assigned to the customer, and the navigation on the web in the tunnel is made with a SSL

    Web-mangle that allows us stuff things in theSSL session.

    SSL VPN (Anyconnect) Client is a client of complete tunneling using SSL/TCP, which installs an application on the computer and

    envelopes vpn traffic in the ssl session and thus also an assigned ip address has the

    tunnel's two-way, not one-way.   It allows for the support of the application on the

    tunnel without having to configure a port forward for each application.

    AnyConnect is a client of new generation, which has replaced the old vpn client and can be used as long as the IPSEC vpn ssl.

    For anyconnect licenses please see the link below:

    http://www.Cisco.com/c/en/us/TD/docs/security/vpn_client/AnyConnect/ANYC...

    Kind regards

    Kanwal

  • VPN between a PIX and a VPN 3000

    I'm trying to set up a VPN between PIX and a VPN 3000. All configurations are complete, but the tunnel has not been established. On the PIX, to 'see the crypto engine' and ' show isakmp his ' orders, I do not see the tunnel. Of "show ipsec his ' command, I can see the mistakes"#send"continues to increase when I try to connect to the remote network. Here is the copy - paste command:

    Tag crypto map: myvpnmap, local addr. 10.70.24.2

    local ident (addr, mask, prot, port): (10.70.24.128/255.255.255.128/0/0)

    Remote ident (addr, mask, prot, port): (10.96.0.0/255.224.0.0/0/0)

    current_peer: 10.70.16.5:0

    LICENCE, flags is {origin_is_acl},

    #pkts program: encrypt 0, #pkts: 0, #pkts 0 digest

    #pkts decaps: 0, #pkts decrypt: 0, #pkts check 0

    compressed #pkts: 0, unzipped #pkts: 0

    #pkts uncompressed: 0, #pkts compr. has failed: 0, #pkts decompress failed:

    #send 12, #recv errors 0

    local crypto endpt. : 10.70.24.2, remote Start crypto. : 10.70.16.5

    Path mtu 1500, fresh ipsec generals 0, media, mtu 1500

    current outbound SPI: 0

    SAS of the esp on arrival:

    the arrival ah sas:

    SAS of the CFP on arrival:

    outgoing esp sas:

    outgoing ah sas:

    outgoing CFP sas:

    Obviously, the PIX identifies protected traffic but failed to establish the tunnel. I was wondering what could be the reason for these kind of mistakes? That means them growing '#send errors?

    Thank you very much!

    Sending error mean simply the PIX is grateful to encrypt this traffic, but there is no built tunnel and so it must drop the package.

    you will need to look at why the tunnel is not under construction however, "sending error" are just a byproduct of some other configuration issue. On the PIX, it looks like you would have something like:

    Crypto ip 10.70.24.128 access list allow 255.255.255.128 10.96.0.0 255.224.0.0

    On the 3000 under the L2L section and the Local and remote network, you need the exact opposite of the latter, then it would be:

    / Local network mask = 10.96.0.0/0.31.255.255

    / Remote network mask = 10.70.24.128/0.0.0.127

    If you have something else the tunnel will fail to come. Otherwise, we see that the Cryptography debugs the PIX and the trunk of the 3000 when the tunnel is built.

  • PIX - PIX VPN and Client VPN - cannot access core network

    I hub and spoke PIX and a VPN Client that connects to speak it PIX, much the same as the example configuration here: -.

    http://www.Cisco.com/en/us/products/HW/vpndevc/ps2030/products_configuration_example09186a00800948b8.shtml

    This example shows the client VPN access to the network behind PIX RADIUS. I want the client to also be able to access the central network, i.e. the client connects to the pix speaks via vpn, and traffic is routed through the vpn to PIX - PIX to the central site.

    How this would change the configuration contained in the example?

    See you soon,.

    Jon

    You can not do this, the PIX cannot route a package back on the same interface, it is entered in the. The only way to do that is to have the client connect to the hub PIX, but then they would not be able to get to the network behind PIX distance either.

    Or that the customer would connect on a different interface in the PIX of distance, but this would mean another connection ISP on this PIX. Example of config is here: http://www.cisco.com/warp/public/110/client-pixhub.html

Maybe you are looking for