DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

2800 - 2820 VPN established but cannot send traffic

  • d4vehug
  • Topic Author
  • Offline
  • New Member
  • New Member
More
05 Oct 2009 16:58 #1 by d4vehug
I have created a VPN between 2 sites using a 2800 and a 2820.

The VPN is established fine & remains connected, but I cannot see anything across it. Nothing can be reached with RDC, windows explorer or pinged from the MSDOS prompt in either direction. I cannot ping the router at the other site.

To check, I worked through 'Mikey's Guide' for the LAN to LAN approach.

Everything seems to be as he details. Each workgroup is on a seperate address range: (one on 192.168.1 and the other on 192.168.2), etc etc.

As previously mentioned, the VPN seems to be established as I can view it in the Connection Management screen - it does not drop.

Both sites have Microsoft Workgroups. There are no servers or anything else to bypass. I need to be able to use Remote Desktop Connection between workgroups using the internal address range.

I am wondering if there is an extra layer of security in the 2820 perhaps?

The 2800 has firmware version 2.8.2
The 2820 has firmware version 3.3.1.2_232201

All help very gratefully received.

regards

David

Please Log in or Create an account to join the conversation.

More
06 Oct 2009 12:24 #2 by macavity
In VPN connection management make sure the "Virtual Network" entry is showing as you'd expect.

Ie,

on 192.168.1.1 you'd see it show 192.168.2.0 / 24
on 192.168.2.1 you'd see it show 192.168.1.0 / 24

If it's saying /32 then it might be a teleworker VPN by mistake (this can happen if the same username is used for both a tele and lanto profile)

Please Log in or Create an account to join the conversation.

  • d4vehug
  • Topic Author
  • Offline
  • New Member
  • New Member
More
06 Oct 2009 16:34 #3 by d4vehug
Replied by d4vehug on topic VPN traffic
Checked that and they both read /24

really appreciate anything else u can suggest

regards

David

Please Log in or Create an account to join the conversation.

More
07 Oct 2009 11:29 #4 by macavity
humm, is the setting "From first subnet to remote network, you have to do" set to Route ? If it's set to NAT then it performs NAT on the traffic as if it was going out to the Internet.

Can router 1 ping router 2 LAN IP (and vice versa) using Ping Diagnostics

Is the default gateway of the PCs on each site set to the router on that site?

Please Log in or Create an account to join the conversation.

  • d4vehug
  • Topic Author
  • Offline
  • New Member
  • New Member
More
08 Oct 2009 09:55 #5 by d4vehug
I just checked everything you had suggested and all seemed to be in order.

I even wrote a long and detailed reply.

I had tried pinging in either direction (external IP address) with no success.

I had finished my reply when i decided to ping the internal addresses once more, just to be thorough. To my utter bewilderment, they worked.

As does RDC!

The only change can have occured from the networks being completely powered off overnight. I had only reset the routers when I first posted... assuming this was sufficient.

I can only thank you for your help & time, and only humbly post this so you know the matter has resolved itself.

Computers!

regards and thank you

David

Please Log in or Create an account to join the conversation.

More
12 Oct 2009 14:32 #6 by macavity
Confusing that we don't know why, but glad to hear it's working for you. :)

Please Log in or Create an account to join the conversation.

Moderators: Sami