Nate Goddard | 12 Dec 2006 23:57

Cisco Router IOS to Symantec Raptor

Hello,
	I have been unable to reach the list site to look for any archives
on this question, so I’ll through it out there.  I’m trying to setup a IPSec
VPN tunnel from a Cisco Router (on which I have several hundred successful
site-to-site tunnels) running IOS 12.4(7) to a Symantec Raptor.
Unfortunately, I can’t really provide much detail about the Symantec because
it’s a customer/vendor’s device.  At one point the tunnel did work, but
started failing, and now it fails when something behind the Symantec tries
to initiate a tunnel, but not when something behind the Router initiates the
tunnel.
	To lay out some details (which have been obfuscated to protect
identity and security):

Cisco side:
Inside IP: 10.1.1.25 (local subnet has routing to encr dom)
Outside IP: 1.2.3.4
Preshared key
P1: 3DES MD5 DH2
P2: 3DES MD5 no-pfs
Local encryption domain: 7.8.9.0/24 (public space)
Sample ACL for crypto map:
	permit ip 7.8.9.0 0.0.0.255 host 172.16.10.56
permit ip 7.8.9.0 0.0.0.255 host 172.16.10.113
permit ip 7.8.9.0 0.0.0.255 host 172.16.10.78

Symantec Raptor side:
Inside IP: 172.16.10.254
Outside IP: 21.22.23.24
Preshared key
P1: 3DES MD5 DH2
(Continue reading)


Gmane