D-Link VPN Router > DSR-500

Issues with establishing VPN IP Sec between 2 DSR-500(N)

<< < (2/2)

PacketTracer:
Hi again,

just have looked at the PDFs you sent me via personal message:


* "Mode Config" is for client-to-site IPsec-VPNs where single IPsec VPN clients use this method to get an IP address (and other parameters) for use inside the tunnel. But your scenario is different: You have a site-to-site IPsec-VPN and the clients at both sites aren't IPsec-VPN-Clients which have to get IP addresses via "Mode Config". They are LAN cllients that get their addresses via DHCP (nothing to do with IPsec) or are statically configured. If you define an IP range for "Mode Config" that corresponds to the IP addresses used in the LAN (at the opposite site), the DSR 500 will probably not route those addresses through your IPsec tunnel. Hence: Do _not_ configure "Mode Config" (leave fields blank) - you don't need it.
* Either you won't use "DHCP oder IPsec" hence don't configure it.
* I don't understand what "IPsec One to One Mapping" shall be good for - I wouldn't configure that
PT

mmolvid:
Big thank you for your help, I am traveling this week so I will test your suggestions after that and se if I get things to work properly.

//Matt

mmolvid:
Now it is all working, thanks for all your help!

//Matt

PacketTracer:
Just online...
Have Fun!
PT

Navigation

[0] Message Index

[*] Previous page

Go to full version