Virtual Private Networks VPN Tunnel and VPN Client at same time

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
VPN Tunnel and VPN Client at same time GrantH 05-10-07
Posted by GrantH on May 10, 2007, 11:07 am
Please log in for more thread options
I have a Linksys VPN router which allows multiple VPN end-to-end
tunnels, which works fine. However, to use a software VPN client
(CheckPoint, Cisco, etc.), the router's IPSec pass-through must be
enabled, which breaks the tunnel(s), and vice-versa.

Linksys has already explained that this is a limitation. I'm looking
for a device (broadband router, VPN concentrator, whatever) which will
allow this implementaion, or an alternative setup with perhaps 2
routers, a router and concentrator, etc.

Our new office has 5 static IPs, I'm hoping I can come up with some
solution where any host w/in the LAN could use a connected VPN tunnel,
while another host used a software VPN client to make a different
connection.

Any help on this?

Thanks in advance!
Grant


Posted by Rick Merrill on May 10, 2007, 12:02 pm
Please log in for more thread options
GrantH wrote:
> I have a Linksys VPN router which allows multiple VPN end-to-end
> tunnels, which works fine. However, to use a software VPN client
> (CheckPoint, Cisco, etc.), the router's IPSec pass-through must be
> enabled, which breaks the tunnel(s), and vice-versa.
>
> Linksys has already explained that this is a limitation. I'm looking
> for a device (broadband router, VPN concentrator, whatever) which will
> allow this implementaion, or an alternative setup with perhaps 2
> routers, a router and concentrator, etc.
>
> Our new office has 5 static IPs, I'm hoping I can come up with some
> solution where any host w/in the LAN could use a connected VPN tunnel,
> while another host used a software VPN client to make a different
> connection.
>
> Any help on this?
>
> Thanks in advance!
> Grant
>

Why?

Don't you have a s/w client for the linksys?


Posted by GrantH on May 10, 2007, 12:37 pm
Please log in for more thread options
wrote:
> GrantH wrote:
> > I have a LinksysVPNrouter which allows multipleVPNend-to-end
> > tunnels, which works fine. However, to use a softwareVPNclient
> > (CheckPoint, Cisco, etc.), the router's IPSec pass-through must be
> > enabled, which breaks the tunnel(s), and vice-versa.
>
> > Linksys has already explained that this is a limitation. I'm looking
> > for a device (broadband router,VPNconcentrator, whatever) which will
> > allow this implementaion, or an alternative setup with perhaps 2
> > routers, a router and concentrator, etc.
>
> > Our new office has 5 static IPs, I'm hoping I can come up with some
> > solution where any host w/in the LAN could use a connectedVPNtunnel,
> > while another host used a softwareVPNclient to make a different
> > connection.
>
> > Any help on this?
>
> > Thanks in advance!
> > Grant
>
> Why?
>
> Don't you have a s/w client for the linksys?- Hide quoted text -
>
> - Show quoted text -

No - The sw client is used to make a non-tunnel VPN connection, from a
LAN workstation, to one of our clients somewhere outside, who are
configured to connect via a regular VPN client. The tunnels are used
for other clients who want the added security of an endpoint-to-
endpoint dedicated tunne. With our current router, no VPN client will
work unless the router's pass-through is turned on - but when turned
on, the router ONLY passes the IPSec traffic, and will no longer use
it for any dedicated tunnels.


Posted by Rick Merrill on May 10, 2007, 3:42 pm
Please log in for more thread options
GrantH wrote:
> wrote:
>> GrantH wrote:
>>> I have a LinksysVPNrouter which allows multipleVPNend-to-end
>>> tunnels, which works fine. However, to use a softwareVPNclient
>>> (CheckPoint, Cisco, etc.), the router's IPSec pass-through must be
>>> enabled, which breaks the tunnel(s), and vice-versa.
>>> Linksys has already explained that this is a limitation. I'm looking
>>> for a device (broadband router,VPNconcentrator, whatever) which will
>>> allow this implementaion, or an alternative setup with perhaps 2
>>> routers, a router and concentrator, etc.
>>> Our new office has 5 static IPs, I'm hoping I can come up with some
>>> solution where any host w/in the LAN could use a connectedVPNtunnel,
>>> while another host used a softwareVPNclient to make a different
>>> connection.
>>> Any help on this?
>>> Thanks in advance!
>>> Grant
>> Why?
>>
>> Don't you have a s/w client for the linksys?- Hide quoted text -
>>
>> - Show quoted text -
>
> No - The sw client is used to make a non-tunnel VPN connection, from a
> LAN workstation, to one of our clients somewhere outside, who are
> configured to connect via a regular VPN client. The tunnels are used
> for other clients who want the added security of an endpoint-to-
> endpoint dedicated tunne. With our current router, no VPN client will
> work unless the router's pass-through is turned on - but when turned
> on, the router ONLY passes the IPSec traffic, and will no longer use
> it for any dedicated tunnels.
>

You will have to find a simpler way to accomplish the end goal.


Similar ThreadsPosted
VPN Tunnel and VPN Client at same time May 10, 2007, 11:07 am
Router2Pix tunnel and VPN Client at the same time June 8, 2006, 5:43 am
dynamic rule, only 1 VPN connection work at time June 7, 2005, 7:18 pm
Linksys RV082/Greenbow client tunnel connected not able to connect to local resources December 14, 2006, 10:04 am
Sometimes a tunnel... sometimes not February 8, 2005, 3:14 pm
VPN tunnel through GPRS August 25, 2005, 11:10 am
MTU size VPN Tunnel July 13, 2006, 10:01 am
FVS318v3 to FVS318v1 tunnel April 15, 2005, 3:47 pm
Tunnel established, but no ping February 25, 2006, 9:52 am
reaching router thru vpn tunnel March 21, 2006, 10:15 am
VPN tunnel between 2 sbs 2003 servers June 27, 2006, 10:54 am
Multiple VPN Tunnel and Router June 30, 2006, 6:07 am
VPN tunnel between Dlink DFL-700 and Cisco January 18, 2007, 2:57 pm
problem with vpn tunnel between two zywall 35 August 8, 2007, 12:22 pm
IPSec tunnel works to one concentrator, not another March 23, 2005, 5:57 pm