I have a DIR-655_RevB updated with the latest firmware 2.03NA. I have two VPN devices in my house trying to get to my corporate office: a VPN phone and my laptop with a VPN client, both use IPSec. Either device has no problem making a solid VPN connection separate from each other. Meaning that when my laptop is not connected, I can connect the VPN phone with no problem. And when the VPN phone is disconnected, the laptop also has no problem making a solid and stable VPN connection. So I know the router is configured correctly to let thru VPN traffic for either device. i.e. IPSec is enabled, UDP/TCP Endpoint Filtering are both set to Endpoint Independent (and I've tried every other combo), SPI is disabled.
The problem is that I need to have both devices connected simultaneously, which this router is supposed to handle. If I have the VPN phone connected first, then when I launch the laptop VPN client, the VPN phone gets disconnected. I'm assuming that at this point, all VPN traffic is being tunneled back to the laptop. I cannot re-establish the VPN phone connection until I disconnect the laptop client, at which point the VPN phone "automatically" reconnects (meaning I don't have to reboot it, the VPN traffic just somehoe gets redirected back to this device)
Region : UnitedStates Model : TL-MR3020 Hardware Version : V1 Firmware Version : latest ISP :
I have problem to get pptp working. I setup pptp VPN server on my home router and configured pptp dialup on my laptop. If my laptop connect to internet directly, I am able to connect to home router via PPTP VPN. However, if I connect TL-MR3020 to internet(wired) and then connect my laptop to TL-MR3020 wirelessly, I can browse internet without problem. The problem is I cannot connect to home router via PPTP VPN any more. I believe the problem is on TL-MR3020.
Region : United Kingdom Model : TD-W8960N Hardware Version : V3 Firmware Version : ISP : ADSL24
How to successfully get VPN passthrough working with the W8960N?
I have the W8960N providing internet to local device. I want to setup a second router, TP-Link 1043ND with WW-DRT and PPTP set up to provide a separate access point for PPTP tunnelling to VPN servers outside of the UK. HideMyAss are providing VPN servers I wish to connect to.
I have followed instruction to set up both routers but would like to know if I am missing something. First router 192.168.1.1 is basically untouched but with ports under NAT added: ports 1723 and 47 for my second router at local IP 192.168.1.111 Second router is set up according to [URL].
I know VPN work via just my first router. I can tunnel through using an Android tablet and connect to any HMA VPN server without changing anything on the 8960N.
i have 2 ssid with the same comfiguration (diff only in name) in one ipsec ssid vpn (l2tp over ipsec with natt ) works fine, in another after phase 2 is completed no traffic is forwarded and vpn session is dropped. There are no access lists on equipment.
I found in documentation that need to activate L3 security and set it to vpn pass-through, but in drop-down menu only one item "none". What is the reason to drop ipsec traffic ?
I have a Meraki Firewall that sits behind my Cisco RV082. The Meraki is setup to run a VPN connection with my server but I am having problems passing the VPN traffic through properly.
I have 2 Uverse Internet Connections that the RV082 using load balancing so that they are shared. I have 10 static IP's.
I am trying to come in on one of my static IP addresses throught the Cisco RV082 to the Meraki and after doing a capture on the meraki it appears that it is starting to receive data to intiate the VPN connection but when it sends data back to the VPN client machine it never makes it.
In a cisco firewall 5520 how could you take a public wan connection and pass it to another firewall behind the 5520 without using nat. How could you put a single port on the 5520 into transparent or passthrough much like you can on a broadband modem?
I'm trying to access a machine via pptp through a new WAG320n without any success. PPTP Passthrough is enabled i've opened port 1723 TCP pointing to my machines ip-adress but i can't get the connection working.
I'm having some issues with Web-Passthrough, I'm using two 4404-50 controllers. Clients get IP addresses well. I'm using the controllers internal DHCP Servers. Controllers can reach DNS public IP Addresses (from management and guest vlan), the issue is that only very few clients are able to get displayed the Web-Passthrough page, the rest of the clients never get the page.
Version 7.0.98.0
The controllers also work as anchor controllers for two more foreign controllers.
I just bought this router recently found out its a strong good router but i got shocked that there is no PPPOE passthrough option on VPN passthought i am disappointed because this option is soo important to me and i just spent money on nothing, is WAG160N doesnt support PPPOE passthrough ??? and if it does how can i do it .
I have e3000 but in VPN Passthrough I don't have ( pppoe passthrough ). Just I have is ipsec + pptp + l2tp only. How could I add ppoe passthrough in my e3000.
I have a pair of ACE 4710 and I think I have all the failover configured correctly and it all appears to be working. My question is regarding setting QOS on the physical interfaces that are part of my port channel. I have qos trust cos enabled on all the interfaces in my port channel. These interfaces are connected to a 3750 swith. Do I need to configure QOS on the 3750 to allow the COS bit to pass through my 3750 to my peer?
I have a cisco 2504 running 7.0.220.0. I am trying to configure Web Auth for External Redirect, Passthrough. I have a page created on an external web server that was taken from the Web Auth Bundle and modified. It is a simple "accept" or "reject" on a Terms and Conditions page. I have a Pre-Auth ACL configured to only allow communication to the server the T&C page resides on.
When I connect to the SSID, the page redirects to the external URL and the the URL shows up in the browser window with all the variable data as a GET on the URL line, but the page never loads. It just hangs. I can copy the the URL data, paste that in once I am on-net, and the page loads just fine.
So, something is happening when the WLC is attempting to proxy-redirect the page back to the client.
I have a guest wireless network setup on a 5508 WLC using 7.2.103.0 firmware. Under my guest WLAN>security>Layer3 tab I have "layer 3 security" as "none", "web policy" as check marked, "passthrough" selected, "over-ride global config" as check marked, "web auth type" as "customized(downloaded), "login page" and "login failure page" as "login.html" selected.
I haveI have 4402 WLC's using 7.0.116.0 firmware throughout my company that anchor back to the 5508 for the guest network. The 4402 WLC have the guest network configured as WLAN>security>Layer3 tab I have "layer 3 security" as "none", "web policy" as check marked, "passthrough" selected.
I would like to disable the HTTPS for the logon screen and I am not sure what steps need to be done for this. I researched and found the command "config network web-auth secureweb disable". I set the command on the 5508 only and rebooted. When I tested I got a blank webpage with "http://1.1.1.1/fs/customwebauth/login.html?switch_url=http://1.1.1.1/login.html" in the address bar and had no way of clicking the accept button to get to the Internet.
Everything works fine again if I enter "config network web-auth secureweb enable" and reboot. Do I need to run the "config network web-auth secureweb disable" command on all the 4402 WLC's that are anchored to the 5508? What could be breaking my login.html page while using only http?
I am working on IPSec Passthrough on an ASA 5520, with version 8.3, and ASDM 6.3. Currently I have a requirement for users in my internal network (10.10.249.128 / 25) to be able to connect to external IPSec VPN servers.
So I created a network object with 10.10.249.128 / 25, and used dynamic PAT to translate the source ip address to the external internet facing outside interface:
I then added the following rules on the inside-in ACL: However troubleshooting shows that isakmp is passing through the firewall, but esp and ah is not.
For isakmp:
For ESP:Seems like the nat rule is drawing my ESP traffic,
I've download a login.html into the controller successfully, but when I preview the page there isn't an accept button. Do I need to create the accept button with the html file or is there some place I need to enable on the controller itself. After download the .tar file I reboot the controller but no luck. I also create a java script button redirect but it didn't redirect to where I needed to go. It just stuck on the splash page.
Any setup passthrough mode of the Motorola NVG510 router ATT makes you use with U-Verse to a CISCO 877 or similar, with a block of public addresses they want to use? It is So frustrating that I have to deal with this NVG510. It is NOT a very business class router... I am assuming that I need to put it into "pass through" mode for the Cisco to be able to manage what happens with my assigned public addresses. If there is another way, let me know!
Here's what I plan to do: I've read the "related to" post above, about putting the NVG510 into pass through mode, and I plan to do this as it discusses. I'll assume that works for now. But it will assign the router's WAN IP Address to the router's "outside" interface, not one of my private IP addresses. On the Cisco side, here is what I would do: vlan1 interface is my "inside" private network. Create vlan2 interface using dhcp to get IP/gateway from the nvg510, or set it up manually, whichever works... This interface will be the "outside" NAT interface. But this interface's address will be the router's WAN address, NOT the first of my 5 public assigned usable addresses...
Here is how it will be setup: interface FastEthernet0 switchport access vlan 2 [code]...
Then - make it my default NAT interface: ip Nat inside source list 110 interface Vlan2 overload
If I stop there... I assume I could then NAT ports from my different private addresses to the various servers in my office. But the router won't have an interface with that first assigned-to-me public address. The reason I ask is that we have a site-to-site crypto- map defined, and the interface it is defined on determines the IP Address it will communicate from. I wanted this to be my own assigned public address, not the WAN address of the router... Not sure how I would do that though... Same with the default NAT assigned to vlan2 - by default machine in access list 110 will get to the internet with the WAN address of the nvg510, not my private address.
Can I create interface vlan3, somehow linked to vlan2, give it the first private address in my block, and then move the cypto-map to this interface, and also change the default Nat to vlan3 now instead of vlan2? ip nat inside source list 110 interface Vlan3 overload
How would I go about doing such a thing? I am not a Cisco expert, I understand just the basics... This is a bit more complicated than I can figure out. Or maybe it is not possible? Will I have to, for any computer that needs unsolicited traffic through the internet to use one of my assigned public addresses, to setup a one-to-one NAT for that address to that internal address? And everyone else is stuck using the WAN address. If this is the case, it is not right... What were they thinking when they designed this router and forced us to use it as a business class U Verse customer? This should NOT be so difficult/complicated.
Using a Mac running Mac OS X 10.6.8 with VPN Tracker 6.3.0.Before switching to the WAG320N I had no issues with my IPSEC VPN client. After the switch it consistently fails in Phase 1 negotiation.In the log file of the gateway I only notice: Mon, 2011-08-22 07:47:31 - [Outgoing] UDP Packet - 192.168.1.100:500 --> IP.ADDRESS.VPN.GATEWAY:500.The software itself complains about timeouts while contacting the remote gateway.VPN pass through is enabled, no port forwarding is set up, firewall is disabled.
I have a Cisco 5508 running version 7.0.116.0. This controller hosts an open public wifi that requires users to accept a terms agreement via a Web-Passthrough setup that redirects them to the terms splash page. For most people this works without any issue. However, if a user has their homepage for their default browser set to a https site, such as [url]..., then they are never redirected to the terms splash page. The page will just spin and spin until finally they get a timeout error.
I have two xbox 360's and two ps3's(my brother has his own set and I have my own). I can not figure out how to have two of them running at the same time with open nats, but if one is on then it has a open nat. Also, when I'am on my xbox and my brother on the ps3, his nat is open and mine is moderate. By the way I have uPnP on and have firmware 2.10.
When I connect 2 laptops to my router, why does the speed/connection get split? I would understand that if the speed was maxed out or something but it's a lame 500 kb/s connection. Do all wify routers behave this way? It's kind of annoying since there's a trafic quota limit implemented and when someone downloads, the other one can't do s^&t? how to handle this?
what I want to do is setup a Tablet for use and share my one Internet connection with it and my desktop. I do not want the desktop and the Tablet networked with each other. there is a Tablet on Newegg: Velocity Micro Cruz Reader R103. the details say it's communication is 802.11b/g Wireless LAN. so I copy and paste that on Newegg and get: D-Link DIR-601 Wireless Broadband Router. not sure if that's what i need or what the configuration would be but I kind of know how to set it up.my question is can I connect a Desktop and a Tablet or any PC device to a router like this with out networking the individual units with each other? just to where it serves as more a splitter. is there any wireless alternatives to only "split" the Internet connection and not network the desktop and Tablet?
I remember the Virtual Server instead of Port Forwarding can be setup for multiple PCs to be Remote Desktop accessible from the Internet, but I forget how.
Adding a second DAP-1522, They have 1 DAP-1522, they set that up useing the WAP(button on the side), This one is running in the frontroom of the house and the 2nd bridge will be running in the bedroom of the house.She has tried to click on the WAP button on both Dap-1522's and then the router to sync but thats not working, from what we can tell. I think I will need to manually config them now that a second one has been introduced.the frontroom Bridge is 192.168.0.50, but we cant find the ipaddreess for the second dap-1522 at this time. So question to all, if I can - Is there a way to identify all of the Dap-1522's on the network or anything that is connected on the network. as the DIR-655 is only showing 2 things connected?Right now I wish she would have listened too me and had her house wired for ethernet when the house was being built.
For the last several months, but progressively worse, my internet drops due to the DNS Server not responding. This happens across my whole network and the only fix I can come up with is to reset the router every time it does this. At this point I am thinking a new router is in order (but do not have the money atm), I am using a D-Link DIR-625 V. C1 Firmware 3.08 router and a Motorola SB6120 modem. Is there another permanent fix for this problem is or my router on it's last legs? Would setting a new DNS Server on my router work?
I have a Mac, and my wife has a PC running Windows 7. Since we moved into our new house, our Dlink DIR-601 does not seem to want to send Wi-Fi to both computers at the same time. One of the computers always seems to lag or not have internet connection at all. The Mac also seems to work better and more often than the PC when both are trying to access wi-fi.
I have messed with the channel settings, security, and most other typical settings on the router to no avail. Is there a setting I'm missing or should I enable certain settings that will allow both computers to have the same signal strength and reliability.
Region : Others Model : TL-WR1043ND Hardware Version : V1 Firmware Version : ISP :
I got a TL-WR842ND to try and decide if i want to buy it. I want to connect a usb hub with 5 printers connected to that hub and use it as print server, would that work at all?
Region : Sweden Model : TL-MR3420 Hardware Version : V1 Firmware Version : 3.12.21 Build 120523 Rel.37880n ISP : Ownit
I am having problems with my TL-MR3420 router, it disconnects WIFI all the time. This occur several times a day and is very annoying.
I have quite recently upgraded to the latest firmware but the problem seem not to have been resolved. It also seem that it is mostly the WIFI service that is the problem. The usage of wired routing is working even when the WIFI is disabled.