VPN from Cisco 1721 to PIX 525 - Advice please?

VPN from Cisco 1721 to PIX 525 - Advice please?

NewsGroups | Search | Tools
 comp.dcom.vpn  Post an article  get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content  add this group's latest topics to your Google content  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
VPN from Cisco 1721 to PIX 525 - Advice please? martin.stenner 12-11-2006
Posted by on December 11, 2006, 10:43 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi,

I've just got a Cisco 1721 router working with ADSL in one office. My
next challenge is to get that router to make an IPSec call to a PIX 525
in our Head office (the 1721 has the relevant hardware module to
perform VPN).

Our PIX 525 is set up to receive connections from clients running the
Cisco VPN client software and I have once before set up a tunnel from
that PIX to another remote PIX.

My question is, can you get the 1721 to make a call to the PIX in the
same way that a client would. Or is the only way to construct tunnels
from the 1721 router to the PIX and vice-versa?

I'm relatively new to the world of Cisco, and find that I am learning
best by example! If anyone has any sample configurations that cover
this scenario, or can offer any advice on how best to go about doing
this, I'd really appreciate it. I've found a fair few examples and will
continue to try and understand these in the meantime.

Thanks,
Martin


NMFall 20%
Posted by VinceL on December 12, 2006, 7:25 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Martin,

I'm sure you'll have read thru lots of examples by now. Probably got it
all working already. :-)

My 2cents here:
>From what you've written, if your 1721 ADSL has static IP address, then
you might be better off setting up a site-to-site IPSEC VPN, rather
than the EasyVPN client-server setup. Lots of these cfg examples on
Cisco.com.

Cheers!

martin.stenner@gmail.com wrote:
> I've just got a Cisco 1721 router working with ADSL in one office. My
> next challenge is to get that router to make an IPSec call to a PIX 525
> in our Head office (the 1721 has the relevant hardware module to
> perform VPN).
>
> Our PIX 525 is set up to receive connections from clients running the
> Cisco VPN client software and I have once before set up a tunnel from
> that PIX to another remote PIX.
>
> My question is, can you get the 1721 to make a call to the PIX in the
> same way that a client would. Or is the only way to construct tunnels
> from the 1721 router to the PIX and vice-versa?
>
> I'm relatively new to the world of Cisco, and find that I am learning
> best by example! If anyone has any sample configurations that cover
> this scenario, or can offer any advice on how best to go about doing
> this, I'd really appreciate it. I've found a fair few examples and will
> continue to try and understand these in the meantime.


Posted by on January 1, 2007, 5:12 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
All sorted and working now. The Christmas period gave me chance to
really look into this. It's been an interesting journey, but I now know
a lot more about Cisco routers!

If anyone would like a copy of the config that I used for this solution
and the segment for the PIX end, please feel free to email me at
martin.stenner@gmail.com

Cheers,

Martin



VinceL wrote:
> Martin,
>
> I'm sure you'll have read thru lots of examples by now. Probably got it
> all working already. :-)
>
> My 2cents here:
> >From what you've written, if your 1721 ADSL has static IP address, then
> you might be better off setting up a site-to-site IPSEC VPN, rather
> than the EasyVPN client-server setup. Lots of these cfg examples on
> Cisco.com.
>
> Cheers!
>
> martin.stenner@gmail.com wrote:
> > I've just got a Cisco 1721 router working with ADSL in one office. My
> > next challenge is to get that router to make an IPSec call to a PIX 525
> > in our Head office (the 1721 has the relevant hardware module to
> > perform VPN).
> >
> > Our PIX 525 is set up to receive connections from clients running the
> > Cisco VPN client software and I have once before set up a tunnel from
> > that PIX to another remote PIX.
> >
> > My question is, can you get the 1721 to make a call to the PIX in the
> > same way that a client would. Or is the only way to construct tunnels
> > from the 1721 router to the PIX and vice-versa?
> >
> > I'm relatively new to the world of Cisco, and find that I am learning
> > best by example! If anyone has any sample configurations that cover
> > this scenario, or can offer any advice on how best to go about doing
> > this, I'd really appreciate it. I've found a fair few examples and will
> > continue to try and understand these in the meantime.


Similar ThreadsPosted
VPN advice October 3, 2006, 7:07 pm
Need VPN advice for connecting two offices September 9, 2008, 3:49 pm
Your advice re secure access to remote datacenter August 25, 2008, 3:36 am
VPN Advice...do I need a purchased static ip address on the external interface? January 9, 2006, 11:48 pm
RV042 / SSG-5 site-to-site Advice Needed November 20, 2007, 10:49 am
Cisco Max through Checkpoint FW-1 April 21, 2005, 5:29 am
Cisco VPN Reason 431: April 26, 2005, 2:11 pm
Cisco Pix - Nortel VPN June 2, 2005, 11:20 am
Cisco VPN Concentrator and NAT November 10, 2005, 3:36 pm
Cisco VPN Client <-> XP VPN March 13, 2006, 6:02 am

other useful resources:
The Federal Communications Commission (FCC)
Telecommunications Industry Association
Electronic and Software Security Products and Services
International Telecommunication Union

Custom CGI Perl and PHP programming by 1-Script.com

Contact Us | Privacy Policy
The site map in XML format XML site map