Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 22 Aug 2002 13:52:38 +0200
From:      Maikel Verheijen <maikel@ladot.com>
To:        "'stable@freebsd.org'" <stable@freebsd.org>
Subject:   Racoon ipsec to multiple VLAN's behind a cisco PIX question
Message-ID:  <410777FC7A66D511911500B0D0783455013CF285@nlladot05.intern.ladot.com>

next in thread | raw e-mail | index | archive | help
Hi list!

I have a VPN connection running from my (home) freebsd gateway, to our
company Cisco PIX firewall.


My network setup is as following:


10.0.0.x/24 - [Freebsd] -- { inet cloud } -- [Pix] - 10.31.0.0 / 16 -
[router] - 172.31.0.0 /16

I can make a vpn connection from my freebsd box to the pix, but I can ONLY
connect to 1 of the 2 subnets. If my connection to the 172.31.0.0/16 network
is set up (using a policy), I cannot connect to the 10.31.0.0/16 network,
and vice-versa. If I put in a policy for BOTH subnets, only one will become
active, and I cannot connect to the other subnet.

We tried using "multiple" tunnels (on both the PIX and the FreeBSD box), and
using a route for the 172.31.0.0/16 range over the 10.31.0.0/16 vlan. Both
did NOT work.

Did anyone come across the same problem?


I am using FreeBSD 4.6-STABLE (Fri Aug  9) and Racoon (racoon-20020507a).
The PIX is running software 6.1(1).


Kind regards,


Maikel Verheijen

It is a book about a Spanish guy called Manual. You should read it.
       -- Dilbert 

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?410777FC7A66D511911500B0D0783455013CF285>