We have just created a VPN to a PIX network with our ISP and are having issues in getting traffic to the other side. The situation is as follows:
Int_Network - 192.168.1.0
Ext_Interface - X.X.X.X
Nat_Masq 192.168.1.0 behind X.X.X.X
VPN
IPsec PSK - all working bar 1 detail that seems to stick with me. In the Remote Subnet definition we have been asked for our External_Interface rather than the internal LAN or hosts that we wish to route from.
From the PIX side they say that they are expeting to see only our Ext_Interface in the IPSEC negotiation. When we set the Local Lan as the Subnet Definition they can see the 192.168.1.0 addresses in the IPsec negotiation but refuse a connection.
I have bought this up with them and asked them to change their Access Lists and Crypto Map accordingly. Can anyone suggest another means of getting this to function.
Regards
Mark
This thread was automatically locked due to age.