I use the ShrewSoft VPN Client to temporarily set up a remote IPSEC VPN from my laptop at home to the office RV120 VPN Firewall. Another permanent site-to-site IPSEC VPN is set up between the RV120 and a customer's site. I can RDP from my laptop athome to my office computer, then from there I can RDP to the customer's server. However, I cannot RDP from home to the customer's server.
I did a "fw monitor" trace on the customers Checkpoint firewall. This showed the progression of packets from the outside interface to the kernel and from the kernel to the inside interface when pinging from the office. No packets were received when Idid the ping from my home. I tried adding a route statement to the customer's private network in my laptop with the next hop set to the LAN address of the RV120 but this did not help.
In general, is it possible to route packets through two VPNs in series? If not, why not? If so, what additional configuration is needed to make this work for me?
Bob
bobneworleans@gmail.com <bobneworleans@gmail.com> wrote:home to my office computer, then from there I can RDP to the customer's server. However, I cannot RDP from home to the customer's server.
I use the ShrewSoft VPN Client to temporarily set up a remote IPSEC VPN from my laptop at home to the office RV120 VPN Firewall. Another permanent site-to-site IPSEC VPN is set up between the RV120 and a customer's site. I can RDP from my laptop at
I did the ping from my home. I tried adding a route statement to the customer's private network in my laptop with the next hop set to the LAN address of the RV120 but this did not help.I did a "fw monitor" trace on the customers Checkpoint firewall. This showed the progression of packets from the outside interface to the kernel and from the kernel to the inside interface when pinging from the office. No packets were received when
In general, is it possible to route packets through two VPNs in series? If not, why not? If so, what additional configuration is needed to make this work for me?
Bob
I remember that I had that issue (on a generic Cisco router with IOS)
some years ago, but I cannot remember how I fixed it... it can have
been a firmware upgrade, or maybe some config command. But looking in
the config now, I don't see a command that rings a bell.
(this comes with getting older, I guess)
Sysop: | Keyop |
---|---|
Location: | Huddersfield, West Yorkshire, UK |
Users: | 295 |
Nodes: | 16 (2 / 14) |
Uptime: | 20:39:27 |
Calls: | 6,640 |
Files: | 12,188 |
Messages: | 5,325,290 |