DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

VPN on 2710n

  • southendsupporter
  • Topic Author
  • Offline
  • New Member
  • New Member
More
12 Aug 2011 13:38 #69023 by southendsupporter
VPN on 2710n was created by southendsupporter
Really begining to wish I hadn't recommended Draytek 2710n's to my client :(
Having no success with my SIP issue (http://www.forum.draytek.co.uk/viewtopic.php?f=2&t=16244) -
Now trying to set up a VPN between my office (netgear 834GT) and the Draytek 2710n on my client's network
I cannot establish a VPN :(

On the 2710 -
Netbios naming packet = Pass
Multicast via VPN = blocked
Always On selected
Type of Server IPsec tunnell
Server IP/Host name for VPN = 'my router WAN IP address' Using Ping Diagnostices to this address succeeds
IKE authentication Pre shared key (have multi checked that I have set this the same on both routers
IPSec security method = Medium (AH)
RIP Direction = disable
From first subnet to remote network you have to = route
Under TCPIP network settings:
My WAN IP/ Remote gateway IP and remote network IP all = 0.0.0.0
Remote network mask = 255.255.255.0
Local network IP address = 192.168.2.1
local network mask = 255.255.255.0

On my Netgear:
Remote VPN = Fixed IP address = IP or Vigor 2710n
Local lan = Subnet Address
Start Address 192.168.0.1
Subnet Mask 255.255.255.0

Remote Lan = Subnet Address
Start Address 192.168.2.1
Subnet Mask 255.255.255.0

IKE Direction = responder only
Exchange Mode = Main Mode (only option)
Local identity type = WAN IP Address
Remote Identity type = IP Address
Encryption Algorithm = 3DES


When I Dial my netgear from the 2710n Connection management page nothing seems to be happening.
I get this in my Netgear Logs:
Fri, 2011-08-12 12:25:08 - [Taylorhr] sending encrypted notification INVALID_MESSAGE_ID to <invalid>:0
Fri, 2011-08-12 12:25:14 - [Taylorhr] sending encrypted notification INVALID_MESSAGE_ID to <invalid>:0
Fri, 2011-08-12 12:25:17 - [Taylorhr] received Delete SA payload: deleting ISAKMP State #4
Fri, 2011-08-12 12:25:20 - [Taylorhr] responding to Main Mode
Fri, 2011-08-12 12:25:21 - [Taylorhr] sent MR3, ISAKMP SA established
Fri, 2011-08-12 12:25:21 - [Taylorhr] Dead Peer Detection (RFC 3706): enabled
Fri, 2011-08-12 12:25:21 - [Taylorhr] sending encrypted notification INVALID_ID_INFORMATION to <invalid>:0
Fri, 2011-08-12 12:25:24 - [Taylorhr] sending encrypted notification INVALID_MESSAGE_ID to <invalid>:0
Fri, 2011-08-12 12:25:30 - [Taylorhr] sending encrypted notification INVALID_MESSAGE_ID to <invalid>:0
Fri, 2011-08-12 12:25:33 - [Taylorhr] received Delete SA payload: deleting ISAKMP State #5
Fri, 2011-08-12 12:25:36 - [Taylorhr] responding to Main Mode
Fri, 2011-08-12 12:25:37 - [Taylorhr] sent MR3, ISAKMP SA established
Fri, 2011-08-12 12:25:37 - [Taylorhr] Dead Peer Detection (RFC 3706): enabled
Fri, 2011-08-12 12:25:37 - [Taylorhr] sending encrypted notification INVALID_ID_INFORMATION to <invalid>:0
Fri, 2011-08-12 12:25:40 - [Taylorhr] sending encrypted notification INVALID_MESSAGE_ID to <invalid>:0

Cannot figure out how to see the Logs on the Draytek :(

Anyone help me with either of these issues?

Please Log in or Create an account to join the conversation.

More
20 Dec 2011 15:03 #70524 by asteel
Replied by asteel on topic Re: VPN on 2710n
I'm a total novice but does this help?

http://www.draytek.co.uk/support/vpn_setup.html

It goes on about both networks having different subnets? from what i can see you have both using 192.168.2.XX.

I hope this helps

Please Log in or Create an account to join the conversation.

Moderators: Sami