This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSec woes

Greetings all,

I'm having what appears to be a common issue by the posts I've read, but I'm just not having any luck resolving it.

My desired end result is this:

Workstation===Sentinel(vIP 10.10.0.1)===Internet===ASL===192.168.254.0/24


My ASL Configuration:
--------------------------------------------------

000  
000 "MyVPN_1": 192.168.254.0/24===[REAL IP REMOVED]...%any===10.10.0.1/32
000 "MyVPN_1":   CAs: '%any'...'%any'
000 "MyVPN_1":   ike_life: 14400s; ipsec_life: 3600s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0
000 "MyVPN_1":   policy: PSK+ENCRYPT+TUNNEL; interface: eth0; unrouted
000 "MyVPN_1":   newest ISAKMP SA: #0; newest IPsec SA: #0; eroute owner: #0
000 "MyVPN_1":   IKE algorithms wanted: 65005_128-2-5, flags=-strict
000 "MyVPN_1":   IKE algorithms found:  65005_128-2_160-5, 
000 "MyVPN_1":   ESP algorithms wanted: 253_000-2, flags=-strict
000 "MyVPN_1":   ESP algorithms loaded: 253_256-2_160, 
000  
000  
--------------------------------------------------


My Sentinel Configuration:
--------------------------------------------------
Pre-IPSec Filter: 
any:n/a  any:n/a 

VPN Connections: MyVPN
Gateway : [REAL IP REMOVED]
Remote Network: PrivNet [192.168.254.0 / 255.255.255.0]
Authentication Key : MyPSK
Acquire Virtual IP : On
Specified Manually: 10.10.0.1 / 255.255.255.0

ADVANCED SETTINGS:

IP Comression : Off
PMTU : On
Nat : Off
Deny split tunneling : Off

Secured Connections : None

Secured Networks : None

Default Response:
MyPsk

Allow unprotected traffic

Post-IPSec Filter: 
any:n/a  PrivNet:n/a 
any:n/a  any:n/a 

Allow All Traffic
--------------------------------------------------

WHen I connect, my routing table on my workstation shows a route to my target network using the vIP as the gateway, but no traffic will flow.  Whether I'm connected or not, my other networking is not affected.  Please help...  this is making me nuts.  LOL  


This thread was automatically locked due to age.