Can a IPSec tunnel entry be used by muliple connections

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Content translations are temporarily unavailable due to site maintenance. We apologize for any inconvenience.

Can a IPSec tunnel entry be used by muliple connections

L0 Member
Hi, We have a number of (25+ ) remote 4G modems, that we wish to have VPN'd into our network. The modems can do L2TP/IPSec, IPSec, PPTP. Each modem has a WAN interface which is dynamic and a LAN interface with either one or two devices connected to it. We want to be able to connect to the modem LAN interface and the devices behind it from our central network. I have a modem setup that creates a working VPN and it all works fine. I have a IKE Crypto, IPSec Crypto and IKE Gateway all setup and working. IPSec Tunnel is setup along with a tunnel interface. My question is - Do I need to setup (add) a separate tunnel interface and/or IPsec tunnel for each modem that connects ? I can assign different and static IP for all devices on the remote networks or I can setp up each in it own subnet ie 192.168.200.0/29 etc (that would give me 14 address at each location or can I set them all up on the one 192.168.200.0/24 network and make sure all IP are unique for every device. Hope I have explained well enough and apologies if this is a dumb question. Thanks
2 REPLIES 2

L0 Member
Sorry my mistake /29 is 6 usable IP address's. I am testing out a tunnel interface with 192.168.200.0/24 and using that for all IPSec tunnels creating one for each network ie 192.168.200.9/29 etc. Was just trying to avoid having to make 25+ entries and manage them.

I don't think PA will create multiple IPSEC tunnels for the same PSK (or whatever you are using for ID). Each new tunnel request might delete previus one.

 

  • 1685 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!