Firewall Wizards mailing list archives

LAN-LAN VPN using PIXes and a dialup connection


From: Stefan Pantke <seaside.ki () mac com>
Date: Fri, 25 Jun 2004 07:24:04 +0200

Hi,

I'm new to this list, so please be patient ;-)

I have two LANs which are connected by a IPsec VPN tunnel
through 2 PIX 501 which connect to the internet by some dialup
line (ISDN).

The tunnel itself performs well. Traffic passes correctly.

The problem: Even if both LANs are switched off, the dialup routers
establish new connections. Since this is traffic on IP protocol 50,
it should be related to the IPsec connection.

The questions:

- Why do the PIXes establish VPN connections, even if no LAN
traffic has to be router through the VPN to the ohter LAN?

- How to configure the PIXes for a VPN tunnel using a leased line -
  and not to connect each minute again...

Stefan

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: