• April 24, 2024, 05:57:37 AM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: IPSec connection between two 130s?  (Read 4756 times)

dlleon

  • Level 1 Member
  • *
  • Posts: 3
IPSec connection between two 130s?
« on: March 11, 2011, 10:18:32 PM »

I have a DIR 130 at home and another one at work. Both home and office have a static IP address. I would like the two routers to connect to each other over the internet and permanently bond the two networks. My office network is 10.0.1.x and the home network is 10.0.0.x

I've done the following on both:

1. set local net mask to 10.0.0.0/24 (home) and 10.0.0.1/24 (office)
    Set Site to Site with the remote address being the public IP address of the other router (i've also tried the FQDN)
    set remote net mask to 10.0.1.0/24 (home) and 10.0.1.0/24 (work)
2. set a pre-shared key (the same one on both sides)
3. left local and remote ID blank with default
4. in phase one:
    main mode checked
    Keep Alive
    1 modp 768
    cypher & hash all set to 3DES SHA
    IKE lifetime 28800
5. Phase 2
    PFS unchecked
    Cypher Hash are 3DES / SHA1
    IPSec Life 3600
   
Saved all settings. I can't ping to either side of the network. Any ideas on what i'm messing up? The 130 is the first unit on both sides of the network.


Logged

shalodge

  • Level 1 Member
  • *
  • Posts: 6
Re: IPSec connection between two 130s?
« Reply #1 on: May 08, 2011, 04:23:38 AM »

You cannot have a VPN where both the local and remote subnets are the same.. it will not work!  You will need to change the subnet at one of the ends.
Logged