DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

2820N IPSec problems

  • georgemoore
  • Topic Author
  • Offline
  • New Member
  • New Member
More
17 Feb 2011 23:03 #1 by georgemoore
2820N IPSec problems was created by georgemoore
Hi there,

Hopefully someone here can help me !

I have been having problems with our router/line at work so i have had to upgrade from a Netgear firewall & separate ADSL modem combo. Reason was ADSL dropping out frequently & speeds very bad sometimes.

So i took out the old & fitted the 2820 set-up the LAN & ADSL which is fine. The problem i have is with my VPN LAN to LAN with my remote site in Cornwall.

We use a Toshiba VOIP phone system supplies by our Telecom company which is also installed at our other 2 sites in cornwall. So they have set it up for intercom calls between the depots using the VPN to link them all up.

Since i have set-up the VPN on the new router (my first VPN set-up myself) it links up properly & everything but when i use the Intercom on the phones i can only get one half of the conversation... I can hear them but they cant hear me ?

The router down there is a ZyWall 5 which im not exactly mad about! We primarily use the VPN for RDP into the depot servers which is all working fine. Its just the phones that are playing up.

I have tried nearly every combination of settings on the Lan to Lan profile that i can find which has made no difference. There wasn't any port forwarding set-up on the old router for the phones but i wouldn't imaging it would need it ?

So i was basically wondering if anyone else has had issues with the ZyWall or Zyxel routers with the 2820?

Our IT specialists tried several months ago to replace the router with another ZyWall but it wouldn't work atall. Wouldn't even ring. Hence why im having a go as im not paying them to set it all up to find it doesn't work & put it all back again! :evil:

Im just using the Pre-Shared Key with DES & SHA encryption. I have also tried several variations that were available which made no difference..

Hopefully its some stupid port/firewall rules i have missed!

Any help would be immensely appreciated.

Thanks,
George

Please Log in or Create an account to join the conversation.

More
18 Feb 2011 13:42 #2 by j.baker
Replied by j.baker on topic 2820N IPSec problems
I have had a large number of problems with VOIP traffic. All of them were down to the MTU size.

What VOIP protocol are your phones using?

Which model number of the 2820 are you using? Do you have the one with the voice ports?

Regards

John Baker


Vigor2820 series with firmware 3.3.5.2_RC2
ADSL

Please Log in or Create an account to join the conversation.

  • georgemoore
  • Topic Author
  • Offline
  • New Member
  • New Member
More
18 Feb 2011 14:02 #3 by georgemoore
Replied by georgemoore on topic 2820N IPSec problems
Hi John,

It is a 2820n Annex A.

The router isnt VOIP as such as it doesnt allow a VOIP phone to plug in directly to the router.

Perhaps ive got my terminology wrong. Basically the phone system has a network card which all the phones in this depot connect to. This card has two static IP's on our LAN. The phone system then links up with the other depots using the VPN. The same phone system is installed at all depots.

So its effectively a Local connection just via the VPN. If that makes any sense! Not exactly VOIP but the same effect i guess!

Thanks, George

Please Log in or Create an account to join the conversation.

More
18 Feb 2011 14:28 #4 by j.baker
Replied by j.baker on topic 2820N IPSec problems
Hi

Does the site-site VPN work. Can you ping devices on each end of the tunnel?

The Draytek.com website has example setups for setting up VPN between the 2820 and other devices

Without knowing the how the phone communicate with each other I am unable to help with that problem.

Regards

John Baker


Vigor2820 series with firmware 3.3.5.2_RC2
ADSL

Please Log in or Create an account to join the conversation.

  • georgemoore
  • Topic Author
  • Offline
  • New Member
  • New Member
More
18 Feb 2011 17:11 #5 by georgemoore
Replied by georgemoore on topic 2820N IPSec problems
Hi John,

Yes the Site to Site VPN is fine for everything else other than the phone system between sites.

I have tried to get info from our telecoms company but they are being very secretive. I will ask them again Monday for the installation specifics or a manual they give to their techs.

Thanks

Please Log in or Create an account to join the conversation.