Ik heb problemen met het bereiken van een willekeurige client achter de Zyxel Prestige 652HW die als VPN server is geconfigureerd.
De VPN verbinding wordt correct opgebouwd met SSH Sentinel 1.4.
Ik kan vervolgens niet de fileserver 192.168.1.4 pingen.
Ik dacht dit te kunnen oplossen met het commando:
route add 192.168.1.0 mask 255.255.255.0 80.127.xxx.xxx
Maar dit werkt niet, het geeft de volgende foutmelding:
The route addition failed: Either the interface index is wrong or the gateway does not lie on the same network as the interface. Check the IP Address Table for the machine.
Wat zou hier het probleem kunnen zijn?
Mijn dank is groot als jullie mij verder kunnen helpen, volgens mij is het een eenvoudig iets.
Het Wan adres van de VPN server heb ik vervangen door het denkbeeldige 80.127.xxx.xxx.
Mijn gegevens aan de kant van SSH Sentinel:
LAN
I.P. Address: 192.168.0.1
Network Mask: 255.255.255.0
DHCP Server: Enable
DHCP Start IP Address: 192.168.0.10
DHCP Finish IP Address: 192.168.0.20
WAN
Internet Connection method: Cable - Modem - L2TP (DynamicIP address)
I.P. Address: 83.117.61.31
Network Mask:
Default Gateway:
DHCP Client: Enable
DNS IP Address: 194.134.5.5
194.134.0.97
195.96.96.97
Informatie over de Prestige:
Menu 24.2.1 - System Maintenance - Information
Name: P652HW
Routing: IP
ZyNOS F/W Version: V3.40(NL.2) | 9/8/2003
ADSL Chipset Vendor: Alcatel, Version 4.9.10
Standard: Multi-Mode
LAN
Ethernet Address: 00:a0:c5:6d:45:64
IP Address: 192.168.1.1
IP Mask: 255.255.255.0
DHCP: Server
Press ESC or RETURN to Exit:
Zyxel IPSec setup:
Menu 27.1.1 - IPSec Setup
Index #= 1 Name= AnnaLiseEelke
Active= Yes Keep Alive= Yes
Local ID type= IP Content= 0.0.0.0
My IP Addr= 80.127.xxx.xxx
Peer ID type= IP Content= 0.0.0.0
Secure Gateway Address= 0.0.0.0
Protocol= 0 DNS Server= 194.109.6.66
Local: Addr Type= SUBNET
IP Addr Start= 192.168.1.0 End/Subnet Mask= 255.255.255.0
Port Start= 0 End= N/A
Remote: Addr Type= N/A
IP Addr Start= N/A End/Subnet Mask= N/A
Port Start= N/A End= N/A
Enable Replay Detection= No
Key Management= IKE
Edit Key Management Setup= No
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
Menu 27.1.1.1 - IKE Setup
Phase 1
Negotiation Mode= Main
PSK= ***********
Encryption Algorithm= DES
Authentication Algorithm= MD5
SA Life Time (Seconds)= 28800
Key Group= DH1
Phase 2
Active Protocol= ESP
Encryption Algorithm= DES
Authentication Algorithm= MD5
SA Life Time (Seconds)= 28800
Encapsulation= Tunnel
Perfect Forward Secrecy (PFS)= None
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
route print output:
===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 50 da 41 c1 c2 ...... 3Com EtherLink XL 10/100 PCI For Complete PC Man
agement NIC (3C905C-TX) - Packet Scheduler Miniport
0x3 ...0a b2 bc 02 d3 7d ...... SSH Virtual Network Adapter (sshvnic) - Packet S
cheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.10 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.0.0 255.255.255.0 192.168.0.10 192.168.0.10 20
192.168.0.10 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.0.255 255.255.255.255 192.168.0.10 192.168.0.10 20
224.0.0.0 240.0.0.0 192.168.0.10 192.168.0.10 20
255.255.255.255 255.255.255.255 192.168.0.10 192.168.0.10 1
255.255.255.255 255.255.255.255 192.168.0.10 3 1
Default Gateway: 192.168.0.1
===========================================================================
Persistent Routes:
None
System info van de Prestige:
System Status
System Name : P652HW
ZyNOS F/W Version: V3.40(NL.2) | 9/8/2003
DSL FW Version: Alcatel, Version 4.9.10
Standard: Multi-Mode
WAN Information
IP Address: 80.127.xxx.xxx
IP Subnet Mask: 255.255.255.255
Default Gateway: 80.127.xxx.xxx
VPI/VCI: 2/ 32
LAN Information
MAC Address: 00:a0:c5:6d:45:64
IP Address: 192.168.1.1
IP Subnet Mask: 255.255.255.0
DHCP: Server
DHCP Start IP: 192.168.1.33
DHCP Pool Size: 32
De VPN verbinding wordt correct opgebouwd met SSH Sentinel 1.4.
Ik kan vervolgens niet de fileserver 192.168.1.4 pingen.
Ik dacht dit te kunnen oplossen met het commando:
route add 192.168.1.0 mask 255.255.255.0 80.127.xxx.xxx
Maar dit werkt niet, het geeft de volgende foutmelding:
The route addition failed: Either the interface index is wrong or the gateway does not lie on the same network as the interface. Check the IP Address Table for the machine.
Wat zou hier het probleem kunnen zijn?
Mijn dank is groot als jullie mij verder kunnen helpen, volgens mij is het een eenvoudig iets.
Het Wan adres van de VPN server heb ik vervangen door het denkbeeldige 80.127.xxx.xxx.
Mijn gegevens aan de kant van SSH Sentinel:
LAN
I.P. Address: 192.168.0.1
Network Mask: 255.255.255.0
DHCP Server: Enable
DHCP Start IP Address: 192.168.0.10
DHCP Finish IP Address: 192.168.0.20
WAN
Internet Connection method: Cable - Modem - L2TP (DynamicIP address)
I.P. Address: 83.117.61.31
Network Mask:
Default Gateway:
DHCP Client: Enable
DNS IP Address: 194.134.5.5
194.134.0.97
195.96.96.97
Informatie over de Prestige:
Menu 24.2.1 - System Maintenance - Information
Name: P652HW
Routing: IP
ZyNOS F/W Version: V3.40(NL.2) | 9/8/2003
ADSL Chipset Vendor: Alcatel, Version 4.9.10
Standard: Multi-Mode
LAN
Ethernet Address: 00:a0:c5:6d:45:64
IP Address: 192.168.1.1
IP Mask: 255.255.255.0
DHCP: Server
Press ESC or RETURN to Exit:
Zyxel IPSec setup:
Menu 27.1.1 - IPSec Setup
Index #= 1 Name= AnnaLiseEelke
Active= Yes Keep Alive= Yes
Local ID type= IP Content= 0.0.0.0
My IP Addr= 80.127.xxx.xxx
Peer ID type= IP Content= 0.0.0.0
Secure Gateway Address= 0.0.0.0
Protocol= 0 DNS Server= 194.109.6.66
Local: Addr Type= SUBNET
IP Addr Start= 192.168.1.0 End/Subnet Mask= 255.255.255.0
Port Start= 0 End= N/A
Remote: Addr Type= N/A
IP Addr Start= N/A End/Subnet Mask= N/A
Port Start= N/A End= N/A
Enable Replay Detection= No
Key Management= IKE
Edit Key Management Setup= No
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
Menu 27.1.1.1 - IKE Setup
Phase 1
Negotiation Mode= Main
PSK= ***********
Encryption Algorithm= DES
Authentication Algorithm= MD5
SA Life Time (Seconds)= 28800
Key Group= DH1
Phase 2
Active Protocol= ESP
Encryption Algorithm= DES
Authentication Algorithm= MD5
SA Life Time (Seconds)= 28800
Encapsulation= Tunnel
Perfect Forward Secrecy (PFS)= None
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
route print output:
===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 50 da 41 c1 c2 ...... 3Com EtherLink XL 10/100 PCI For Complete PC Man
agement NIC (3C905C-TX) - Packet Scheduler Miniport
0x3 ...0a b2 bc 02 d3 7d ...... SSH Virtual Network Adapter (sshvnic) - Packet S
cheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.10 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.0.0 255.255.255.0 192.168.0.10 192.168.0.10 20
192.168.0.10 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.0.255 255.255.255.255 192.168.0.10 192.168.0.10 20
224.0.0.0 240.0.0.0 192.168.0.10 192.168.0.10 20
255.255.255.255 255.255.255.255 192.168.0.10 192.168.0.10 1
255.255.255.255 255.255.255.255 192.168.0.10 3 1
Default Gateway: 192.168.0.1
===========================================================================
Persistent Routes:
None
System info van de Prestige:
System Status
System Name : P652HW
ZyNOS F/W Version: V3.40(NL.2) | 9/8/2003
DSL FW Version: Alcatel, Version 4.9.10
Standard: Multi-Mode
WAN Information
IP Address: 80.127.xxx.xxx
IP Subnet Mask: 255.255.255.255
Default Gateway: 80.127.xxx.xxx
VPI/VCI: 2/ 32
LAN Information
MAC Address: 00:a0:c5:6d:45:64
IP Address: 192.168.1.1
IP Subnet Mask: 255.255.255.0
DHCP: Server
DHCP Start IP: 192.168.1.33
DHCP Pool Size: 32