VPN - VPN from Cisco 1721 to PIX 525 - Advice please?

This is Interesting: Free IT Magazines  
Home > Archive > VPN > January 2007 > VPN from Cisco 1721 to PIX 525 - Advice please?





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author VPN from Cisco 1721 to PIX 525 - Advice please?
martin.stenner@gmail.com

2006-12-11, 1:12 pm

Hi,

I've just got a cisco 1721 router working with ADSL in one office. My
next challenge is to get that router to make an IPSec call to a PIX 525
in our Head office (the 1721 has the relevant hardware module to
perform VPN).

Our PIX 525 is set up to receive connections from clients running the
Cisco VPN client software and I have once before set up a tunnel from
that PIX to another remote PIX.

My question is, can you get the 1721 to make a call to the PIX in the
same way that a client would. Or is the only way to construct tunnels
from the 1721 router to the PIX and vice-versa?

I'm relatively new to the world of Cisco, and find that I am learning
best by example! If anyone has any sample configurations that cover
this scenario, or can offer any advice on how best to go about doing
this, I'd really appreciate it. I've found a fair few examples and will
continue to try and understand these in the meantime.

Thanks,
Martin

VinceL

2006-12-12, 7:14 am

Martin,

I'm sure you'll have read thru lots of examples by now. Probably got it
all working already. :-)

My 2cents here:
>From what you've written, if your 1721 ADSL has static IP address, then

you might be better off setting up a site-to-site IPSEC VPN, rather
than the EasyVPN client-server setup. Lots of these cfg examples on
Cisco.com.

Cheers!

martin.stenner@gmail.com wrote:
> I've just got a cisco 1721 router working with ADSL in one office. My
> next challenge is to get that router to make an IPSec call to a PIX 525
> in our Head office (the 1721 has the relevant hardware module to
> perform VPN).
>
> Our PIX 525 is set up to receive connections from clients running the
> cisco VPN client software and I have once before set up a tunnel from
> that PIX to another remote PIX.
>
> My question is, can you get the 1721 to make a call to the PIX in the
> same way that a client would. Or is the only way to construct tunnels
> from the 1721 router to the PIX and vice-versa?
>
> I'm relatively new to the world of Cisco, and find that I am learning
> best by example! If anyone has any sample configurations that cover
> this scenario, or can offer any advice on how best to go about doing
> this, I'd really appreciate it. I've found a fair few examples and will
> continue to try and understand these in the meantime.


martin.stenner@gmail.com

2007-01-06, 7:17 pm

All sorted and working now. The Christmas period gave me chance to
really look into this. It's been an interesting journey, but I now know
a lot more about cisco routers!

If anyone would like a copy of the config that I used for this solution
and the segment for the PIX end, please feel free to email me at
martin.stenner@gmail.com

Cheers,

Martin



VinceL wrote:[vbcol=seagreen]
> Martin,
>
> I'm sure you'll have read thru lots of examples by now. Probably got it
> all working already. :-)
>
> My 2cents here:
> you might be better off setting up a site-to-site IPSEC VPN, rather
> than the EasyVPN client-server setup. Lots of these cfg examples on
> Cisco.com.
>
> Cheers!
>
> martin.stenner@gmail.com wrote:

Sponsored Links






Free braindumps | Software forum | Database administration forum

Copyright 2003 - 2008 webservertalk.com