Cisco Routers :: RV180 Cannot Ping The External IP
Mar 24, 2013
I have setup a new RV180 and it appears to be connected to the WAN, however, I cannot ping the external IP. In some of the documentation, there are references to default access rules, however, there does not appear to be any rules setup. What other settings need to be made to allow the firewall to be pinged on the WAN interface?
I can use PPTP and access all the PCs on a flat network at a remote site. I can ping the pcs and connect with netsupport manager. When I use QVPN I cannot do this. Why? I have added custom ports 5405 for NSM and applied ACL put no joy. I also added PING to ACL but it still doesn't work.
As a raw test it is handy for us to ping externally the WAN port of the SRP 527W. How we configure the SRP 527W to allow this? FYI we have the inbulit SRP firewall enabled.
how to properly route multiple external IPs to internal ips assigned to several servers. Where I'm getting a bit lost is that I have two levels of routing - one from the outside into a comcast business class cable modem, which also creates its own internal network. Within that internal network, I have my RV180 router, which creates another separate internal network in which the servers live (don't want the servers to have access to other computers within the Comcast Modem's internal network). I want to map the external ips to servers within the RV180 second level network.
To diagram:
Comcast Cable Modem / RV180 Computer(s) / S1 S2
An internal IP is assigned to the RV180 router. Suppose it is 192.168.1.100.
The cable modem itself supports NAT as well. Do I use NAT twice (on both cable modem and RV180) to route the external IP to S1 and S2?
Or do I modify the routing table on the cable modem? Then use One to One NAT on the RV180 to map the external IPs directly to the internals?
DNS resolution works and I can surf the web without fail. But if I try to ping any external hosts (I can ping inside interface of ASA fine) from the LAN I get timeouts. I can ping anything from the ASA without fail.
I've had some issues with my 892 router. [code] When match address is set to acl-net12, I can't ping my router on external interface and tunnel is working very bad (15%-20% packet loss).If I change match address from acl-net12 to acl-net12-new then I can ping my router on external interface and vpn si working fine.
I have also an acl (set on external interface) which allow ping but it seems that is not working when acl-net12 is used on crypto map. [code]
I have spent two days on the phone with virgin mobile broadband where I bought the device and they do not know what I am talking about.First of all the mifi is working fine on the one and only computer I have set up so for..it is Vista operating system..I am trying to set up my vista computer as an FTP server on the mifi or wifi or whatever you call it.when I disable the DHCP service on this virgin mobile mifi device so that I can generate my own internal ip for this particular computer..It is not functioning that is I cannot connect to the internet..I tried to get from Virginmobile the DNS server address but they were confused...When I log into the device itself under advanced options it does allow for me to disable DHCP..but my problem is what IP do I use when setting up the wireless connections, I disengaged the automatic, but I am having a heck of a time trying to use the right IP then the gateway address and the DNS.
I've configured a 5505 but internal clients can't ping external ip. To test I've connect a pc with the ip of the default router on the Outside int the ASA can ping the PC and the PC can ping the ASA, but internal clients can't ping the PC
PC config 195.12.23.241/28
Here's the ASA config, so far I've wiped the ASA and started with a blank sonfig and built it up but still not working.
I have a 1760-v router set up at my home lab and I am unable to access IP addresses outside my local network. I have my Cisco router's fast Ethernet port connected to a small net gear router which then connects to my cable modem. The Cisco router is able to ping local address fine, but when I try to ping an outside address or domain name it times out. However, when I am at the CLI and type something like Ping { URL}, it resolves Google's IP address but it will not ping it. I have IP DEFAULT-GATEWAY and IP NAME-SERVER both pointing to my net gear router and pointing to my ISP's DNS server.
I'm trying to setup my home network so that I can access it when away from home but I've ran into problems and I can't figure out what is causing the problem.I've setup the router to forward incoming requests on port 80 to be directed to my PC running WAMP. The PC has a static IP and if I access it from another PC on my network I get the WAMP page load as expected.I've also setup an account with no-ip.com to resolve my (dynamic) ip. If I use the address they have setup while I'm on my network I get the login page for the router, again this is what I expect.The problem begins when I try and access my home address (whatever.no-ip.biz) from outside my network. I've tried it from 2 different locations and via a dial-up account and I get nothing.
Both my DIR-655 and DIR-815, when setup as wireless access points, are unable to ping external IP addresses and thus cannot contact the dlink ntp servers. I've disabled UPnP, disabled DHCP, changed the LAN IP address to an available address on the network. The wireless works, devices are getting an IP from the network DHCP server and can surf the internet. But the DLink router itself cannot ping any external IP addresses. But the DLink router itself cannot ping any external IP addresses.
I'm looking to setup a few ip security cameras in my house and would like to monitor from work. The first thing I did was give the ip camera a static ip on my local LAN 192.168.1.104. I also forwarded port 9000 to this ip. I then went to [URL] to look up my external ip address. I was able to obtain one ip for my router and another for my modem (disconnected router and went direct through modem).
I've since tried to ping my router WAN ip from work numerous times via http://24.x.xxx.xx:9000 and I get timeout errors. I've tried traceroute and it gets close, but times out the last 3 hops. I've had Comcast on the phone many times trying to resolve and needless to say they weren't able to work.
I have an RV180 VPN router.I try to enable the VPN users with PPTP or QuickVPN but is not working.For PPTP sometimes my windows 7 connects to the router, sometimes doesn't connect with a random error message.When it connects, the windows 7 from outside the lan can see the computers from inside the lan but the computers from inside the lan cannot see the windows7 one. This is random also. When i succed to connect, from that computer, the internet is not working anymore.I tried to set the VPN in the same subnet as lan, i tried with different subnet. Is not working.I updated the last firmware. The same.Restore factory settings couple of times, the same.
I noticed if you add more than 10 access rules to the Access Rule table, you are unable to reorder past the first 10.Steps to reproduce:Create 11 rules of the same stream direction, outbound or inbound (...I found the bug with outbound, did not test inbound).try to reorder one of the first 10 rules to the end of the list, either by entering "11" manually, or by pressing the down arrow.System responds that "11" is an invalid number, or that the rule cannot be moved.This issue is not reported in the "Known Issues" section of the release notes for 1.0.1.9.
Which vpn client to use on os x ? (the one included in os x or another?) Which VPN configuration to use on RV180 ? and Which ports to open on RV180 Firewall ? (or any other parameters)
In both cases above, after I started to suspect QOS, I entered a narrow IP range to test and then a MAC to test. Using a VLAN seems to work fine and generate no errors - even a VLAN for the same associated host(s).
I have a support case open about this - didn't get too far yet, but now with a better repro, maybe they will.
I have some issues with router configuration. I cannot open any external web pages, but ping or telnet is just fine. Im using router-on-a-stick scenario. Router connected to LAN trough EtherSwitch module. Config attached.
We have a Cisco 871W working as PIX, controlling external VPN connections to our private network.The configuration is very similar to the one described here - "Cisco Router as a Remote VPN Server using SDM Configuration Example" url...
About once a week, it stops working, without aparent external intervention.The ping to the external IP stops answering, and the internal IP stops answering pings also.The solution is power-off and power-on, and it starts working again ...
What is the correct way to debug this situation ?I can connect a HyperTerminal using direct cable to the 871, but dont know the relevant commands to debug this situation.
Is there any LOG I can have a look into ? Yes, I am quite new to Cisco world .By the way : "show version" says Cisco IOS Software, C870 Software (C870-ADVSECURITYK9-M), Version 12.4(15)T7, RELEASE SOFTWARE (fc3)
I have installed quite recently a cisco ASA 5520 replacing a linux based firewall I have only 2 zones ..one is internal netowrk and other external the internal network has web servers, dns and mail server all having public IPs Every thing is OK but i have seen that if I try to ping an external server for example [URL] i cannot ping says
but I can ping from systems which are outside my firewall perfectly with the linux firewall i had before i could ping perfectly to yahoo from any of my internal servers?
I currently have an RV180 in a small business set-up and curently being accessed remotely by laptops (Quick VPN) and Ipads/Android ICS tablets (PPTP). All is working well but I've become concerned about the security risks of PPTP and would like to shift the tablets to IPSec.
1) For a small business are the PPTP risks real?
2) What are the alternatives for Android ICS? I can't find a Quick VPN client for Android.
3) I can't get the core IPSec VPN in Android to connect to the RV180? Is this possible?
I have RV180 configured with two VLANs. First VLAN is untagged and second VLAN is tagged. The purpose is two have two subnets, with the second subnet used for guest access. Both VLANs have DHCP server enabled. First VLAN is 192.168.1.0/24 and the second VLAN is 192.168.2.0/24, When I connect a computer with untagged Ethernet interface, it gets an IP address from DHCP server on the first subnet i.e. 192.168.1.100 and it can successfully access Internet. When I connect a computer with tagged Ethernet interface (I am using VLAN ID 10), it gets an IP address from DHCP server on the second VLAN i.e. 192.168.2.100. So far so good. I can successfully ping hosts on the Internet i.e. ping www.google.com. But I cannot access Internet from the web browser. I captured Wireshark trace and here is what I see...
1. TCP SYN. Source IP 192.168.2.100, destination IP A.B.C.D. Ethernet frame has VLAN tag (VLAN ID 10) 2. TCP SYN ACK. Source IP A.B.C.D, destination IP 192.168.2.100. Ethernet frame has VLAN tag (VLAN ID 10) 3. TCP ACK. Source IP 192.168.2.100, destination IP A.B.C.D. Ethernet frame has VLAN tag (VLAN ID 10) 4. TCP Data. Source IP 192.168.2.100, destination IP A.B.C.D. Ethernet frame has VLAN tag (VLAN ID 10) 5. TCP Data. Source IP A.B.C.D, destination IP 192.168.2.100. Frame is untagged
The problem is at #5. Packet came back from the Web Server. RV180 properly NATed it to the local IP address. But it did not add VLAN tag.
I just recieved a new RV180 yesterday and it will not connect to my switch. Router was updated to the newest firmware, reset to factory settings. I did change the ip and ip range. Router works fine with one computer attached direct. As soon as I connect my sf300-24P to it, the WAN and LAN lights all light up and then go out. Only the WAN will light back up. I have no connectivity to the router. I plug the laptop to the router directly and no LAN lights come on and can not see the router with arp -a.
I'm considering upgrading a small business to the newly released RV180 or RV180W.Does the RV180 series support 6rd (IPv6 rapid deployment?).I see 6rd documented in the other small business routers (e.g. RV110), but I can't find it in the RV180 documentation.
I'm having issues getting QuickVPN to connect. I think it's an issue pinging the gateway but I'm not 100% sure. We are using Comcast Business, I have placed the RV180 in the DMZ. The setup looks like this: Internet -> Comcast router -> RV180 (DHCP) -> rest of network.
Is there a guide to setup a VPN connection using this router? I've follow the setup guide provided by cisco but I'm having issues. When attempting to connect using the quick vpn client, I get error messages.
Any news on a new firmware for the RV180? I have the most recent version but it still has lots of bugs. IPSec needs polishing. In addition the Logging functions don't work well. I can't send to a syslog and when I try to email the logs I get a email saying there is no data even though several pages of enteries are visible in the web GUI. I've checked the profiles and they are correct. I even tried using just the 'default' profile but no luck.
I have a Cisco Small Business RV180 and I have several VPN users configured. IPsec between my home router (also an RV180) and work router (router in question) is working fine, several PPTP users working fine and 1 QVPN user that works as well. I set up another qvpn user and it didn't work. I went back into the router to check and make sure I hadn't goofed something up and saw that I had 8 lines, 1 and 2 were the QVPN users and 6 other PPTP users, however, the "pages" footer (for lack of a better word) only displays 1 -5 of 5 instead of the 1-8 of 8 I would expect it to show.I dumped the cfg file and opened it up, all 8 user configurations show up. One was my user account which showed negative numbers for the logon time, something like -1day -hours -minutes -sec, so I thought that that might be locking up the router or something so I deleted my PPTP account but it didn't allow the new user access. I deleted all PPTP accounts and no luck there either.I'm running firmware 1.0.2.6.
I am contemplating replacing my Juniper Netscreen 5GT with this new RV180.
serial number 161303LB RVC180 V01
However, it will not connect to my ISP (DSLExtreme) using the same settings I have been using for multiple years. DSLExtreme is using AT&T DSLAMS, as you likely know, and I am unaware of anything unique about how they serve DHCP?
The Cisco wizard sits on the WAN configuration check forever, and never connects. I have rebooted it and allowed it to sit for fifteen minutes trying. I think that is enough.
The 5GT WAN interface is configured for "DCHP Client" and that is how the RV180 is configured.
It is a standard 6MB DSL line, I have tried both the existing cable, as well as the provided one to connect to the D-Link 2320B modem/bridge, which, as I indicated, syncs almost instantly with the Netscreen. No difference when the cables are swapped.
My brand new RV180 seems not to be able to exceed 1.1 MB/s WAN download speed. Using a simple Linksys WRT-320N I used to have 5-6 times this speed. Value is with default settings, various sources (HTTP/NEWS downloads). Trying to improve this wit QoS-settings dows not improve this in any way.