Much of my success for site-site VPN, regardless of whether it is both CP on both
ends or not, is to avoid NAT in the VPN tunnel.  Let me know if you need a hand to
do this...

Mick Gunter wrote:

> Hello,
>
> Am working on setting up a point to point IKE VPN between two Nokia IP330
> boxes.  both are vpn-1 4.1 sp2.
>
> After configuring both sides for VPN, I can originate communication from
> site A to site B but not from Site B to site A.
>
> The curious thing in the logs is that on site A (the site that seems to
> work) when I ping site B the log records the actual (invalid) IP addresses
> for both the source and destination node
>
> On site B (the site that doesn't work) the log file records the external if
> of site A's firewall.
>
> I have hide nat configured for both internal network subnets.
>
> thanks in advance for assistance,
> Mick
>
> ================================================================================
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
> ================================================================================



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to