cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
358
Views
4
Helpful
2
Replies

VPN client could not able to conect other site

vchauhan12345
Level 1
Level 1

Hi,

we are using site to site vpn between three sites/offices using ASA 5510.Now for outside connection, we have configured remote vpn and its working fine with the local site where its connecting/terminated but could not able to ping/connect other 2 remote sites which are working fine on L2l vpn.

2 Replies 2

cpembleton
Level 4
Level 4

You need to add the spoke to spoke networks to the acl's for ipsec and nonat traffic matching. On both ends of the L2L tunnels. Also, if your doing split-tunneling add the networks to that acl as well.

Then you need this command to allow haripining.

same-security-traffic permit intra-interface

See these links for detail instructions on doing spoke->spoke tunnels.

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2030/products_configuration_example09186a008046f307.shtml

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2030/products_configuration_example09186a00804675ac.shtml

Thanks,

Chad

Please rate if helpful!

Hi cpembleton,

Thanks for the update.

It's solve all our problems

Thanks Again.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card