I have a routing problem from a new subnet and vlan I have setup. The network setup is as follows:
4006 layer 2 and 3 switch serving vlan 1 on LAN behind PIX. On this side of PIX we also have networks across WAN. On other side of PIX we have vpn tunnels across internet to other PIX's on our corporate networks. VLAn 1 is live network and can reach all required networks on both sides of PIX.
here's the problem: I have setup a new vlan on the switch on our LAN and can ping items on our lan vlan 1 and across the WAN this side of the PIX. I can not ping servers through the pix vpn tunnel to boxes the other side of the internet vpn tunnels. If I do a tracert from the new vlan it gets as far as the 4006 switch on our network (the gateway for this vlan) an no further. The switch has the IP route for the networks the other side of the PIX vpn tunnels and we know this works because existing vlan uses this fine. I have also updated the correct access list on the PIX to allow traffic from new vlan subnet to the networks the other side of vpn tunnels.
So put simply I think I'm right in saying the switch is not routing the new vlan correctly when the destination is a network the other side of the PIx or the PIx is not allowing this traffic
what next? and thanks in advance for help