EFW Support

Support => VPN Support => Topic started by: aklspec on Saturday 20 June 2009, 06:24:54 pm



Title: IPSEC more than two tunnel to single remote gateway
Post by: aklspec on Saturday 20 June 2009, 06:24:54 pm
Hi techs,

I have an Endian Firewall Community release 2.2.rc3 installation in my side and Cisco ASA in other end. From Cisco side more than 10 networks are published through ipsec vpn.

My problem is I am able to create more tunnels to single remote destination but only two are showing as open at a time. If I make one OPEN manually other will turn to CLOSED status!!!

Won't Endian support more than two tunnels to a destination at a time?


Thanks in advance.

:) AKL


Title: Re: IPSEC more than two tunnel to single remote gateway
Post by: josemanuelNEO on Saturday 28 November 2009, 01:45:18 am
Hi, I have same problem with EFW Community 2.3 . ¿Can you solve the problem? .
Any comments is welcome. Thanks.



Title: Re: IPSEC more than two tunnel to single remote gateway
Post by: nopyobe on Thursday 03 December 2009, 01:30:13 am
Are you trying to create multiple IPSec VPN tunnels between two gateways? IE:

ROUTER A -----VPN1----ROUTER B
ROUTER A -----VPN2----ROUTER B

I dont think that will work, and not sure why anyone would want to do that in the first place.  You can However create multiple IPSEC VPN Tunnles from one to many gateways (Hub and Spoke)

ROUTER B ----VPN1---- ROUTER A ----- VPN2 ----- ROUTER C
                                         |
                                         |
                                         V
                                         P
                                         N
                                         3
                                         |
                                         |
                                         |
                                         R
                                         O
                                         U
                                         T
                                         E
                                         R
                                         
                                         D

Hope that makes sense.