Knowledgebase
VPN Pass-through Connection with Vigor2800 using Cisco VPN3002
Posted by on 27 January 2012 01:42 PM

In the latest firmware revisions for Vigor Routers, the IPSec pass-through function is disabled by default since it conflicts with the new NAT-T feature.

 http://www.draycare.com.au/dfaq/image/VPN/12/vpn_43.JPG

Problem:

Cisco VPN3002 creates a VPN connection to a Cisco Concentrator at a remote location on the internet. IKE packets are going in & out of the VPN3002, but IPSec packets are not passing through the Vigor2800 router.

 

Solution:

To allow VPN pass-through on the DrayTek router, you will need to carry the steps described below in the router configuration:

 

 

 

 

 

 

Telnet to the router and add the following command:

"'srv nat ipsecpass on'.

To view the IPSec pass-through status enter the following command:

“srv nat ipsecpass status”

 http://www.draycare.com.au/dfaq/image/VPN/12/vpn_44.JPG

 

 

(0 vote(s))
Helpful
Not helpful

Comments (0)