PDA

View Full Version : Local lan access disabled when using Cisco VPN


Evan022
2005-02-03, 07:54 PM CST
Hi,

I try to us Cisco VPN to connect local LAN. After I inputed user id and password, VPN asked "continue"? and I press y. then this happened:

Do you wish to continue? (y/n): y

Your VPN connection is secure.

VPN tunnel information.
Client address: 172.18.194.xxx
Server address: 137.132.3.xxx
Encryption: 168-bit 3-DES
Authentication: HMAC-MD5
IP Compression: None
NAT passthrough is active on port UDP 10000
Local LAN Access is disabled

Can anyone give me some suggestion?
I have enabled the 500 port by using lokkit.

Thanks a lot !

Evan022
2005-02-03, 07:55 PM CST
BTW, I tried version 4.0.4a 4.0.4b and 4.6. none of them worked

crackers
2005-02-03, 07:59 PM CST
That's the way the Cisco driver works - it routes all traffic through it's pseudo device.

Jelly_Roll
2005-02-03, 09:37 PM CST
Almost afraid to post this but, I know you can enable Local Lan access on the Windows version of the client. By default Cisco disables Local Lan access as you have seen.

Good Luck! :)

kuifje00
2005-02-04, 03:35 AM CST
Yes you can..
Just put "EnableLocalLAN=1" in the profile you are using.

crackers
2005-02-04, 09:37 PM CST
Well... ya learn something knew everyday... :D

crackers
2005-02-06, 11:37 AM CST
Update - sorry, kuifje00, your "fix" didn't work for me. Changing the setting was no problem, but it still chops off local access. Seems that ping will work from the Cisco-enabled computer to the local network, but that may be because of similarly numbered sub-nets.

nightcrawler
2005-02-07, 05:46 PM CST
This is an option only work if both end of the tunnel agree. So in order for it to work, the server end must configure split tunnel to allow it.

crackers
2005-02-07, 09:04 PM CST
Ah - that explains it. I won't go into what I think of the company's "Network Administrators" or some of their more... brilliant "solutions."