Client to Site VPN Traffic

I have a PIX 515, one site is connected via VPN as 192.168.192.0/24

Client connects to the same PIX and gets an address from this range

192.168.255.0/24

I can't ping from 192.168.254.0/24 to 192.168.192.0/24 or vice versa.

Any ideas why?

Reply to
Fook
Loading thread data ...

I get this error on the 515 -:

No route to 192.168.192.1 from 192.168.254.1

Reply to
Fook

You can't do that in PIX 5 or PIX 6. You are trying to have packets come in an interface (client to PIX outside) and go back out the same interface (PIX to remote site.) The PIX does not allow that. (There are workarounds involving subneting and 802.1Q VLANs; or subnetting the public IPs between two physical interfaces.)

There is a way to do it in PIX 7, but I'd have to look up the command. Something about "same-interface".

Reply to
Walter Roberson

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.