Hi,
I have established a VPN between two ZyWALL 5 routers in two different
places. Both are connected to the DSL Internet connection with fixed IP
address.
My configuration looks like this:
Branch A
- ZyWALL WAN IP- xxx.xxx.xxx.86
- Key Management - IKE
- Local IP Address - 192.168.0.1 - 192.168.0.253
- Remote IP Address - 192.168.10.1 - 192.168.10.253
- Encap. - Tunnel
- IPSec Algorithm - ESP DES SHA1
- Secure Gateway Address - xx.xx.xxx.146
- Authentication Method - Pre-Shared Key
- My IP Address - 0.0.0.0
Branch B
- ZyWALL WAN IP- xxx.xxx.xxx.86
- Key Management - IKE
- Local IP Address - 192.168.10.1 - 192.168.10.253
- Remote IP Address - 192.168.0.1 - 192.168.0.253
- Encap. - Tunnel
- IPSec Algorithm - ESP DES SHA1
- Secure Gateway Address - xx.xx.xxx.86
- Authentication Method - Pre-Shared Key
- My IP Address - 0.0.0.0
I can see that the tunnel between branches is established with success, but
cannot reach (i.e. ping) hosts from A to B and opposite.
Why is that?
For any help thanks in advance
With best regards
Mike
-Hi,
-I have established a VPN between two ZyWALL 5 routers in two different
-places. Both are connected to the DSL Internet connection with fixed IP
-address.
-
-My configuration looks like this:
-
-Branch A
-- ZyWALL WAN IP- xxx.xxx.xxx.86
-- Key Management - IKE
-- Local IP Address - 192.168.0.1 - 192.168.0.253
-- Remote IP Address - 192.168.10.1 - 192.168.10.253
-- Encap. - Tunnel
-- IPSec Algorithm - ESP DES SHA1
-- Secure Gateway Address - xx.xx.xxx.146
-- Authentication Method - Pre-Shared Key
-- My IP Address - 0.0.0.0
-
-Branch B
-- ZyWALL WAN IP- xxx.xxx.xxx.86
-- Key Management - IKE
-- Local IP Address - 192.168.10.1 - 192.168.10.253
-- Remote IP Address - 192.168.0.1 - 192.168.0.253
-- Encap. - Tunnel
-- IPSec Algorithm - ESP DES SHA1
-- Secure Gateway Address - xx.xx.xxx.86
-- Authentication Method - Pre-Shared Key
-- My IP Address - 0.0.0.0
-
Was it a typo, or do you really have .86 as the address of the Wan and gateway
on Branch B? If the latter, then make the WAN IP .146 for starters.
When I setup a Zywall, I used the remote IP subnet, not range ie 192.168.10.0
and 255.255.255.0 I also used MD5 not SHA1.... hth
You are about to answer a thread that has been inactive for more than 6 months. If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.