Please help, this is really an emerrgency
I've gone thru 7 cisco techs (escalation team, backbone team, etc., etc,) and no luck.
Network behind ASA 7.2 is 10.21.30.0
Network behind IOS 1841 is 192.168.1.0
Packets originating at IOS side and destined to ASA should look to ASA inside hosts as coming from the 10.12.0.0 network.
Packets originating at ASA side and destined to 1841 inside network should be going to the fake 10.12.0.0 network which in turn should go to the real 192.168.1.0 network.
Cisco seems unable to accomplish this for as much as they want to.
The ASA side hasnt been touched, except that has been properly configured for the crypto tunnel and all is well.
The "faking" shuold be done at the 1841 and no matter what they try, it does not work.
The ASA has lots of IPSec tunnels to other networks and one of them includes a 192.168.1.0, so this is why we can't use this to reach the 1841 side from the ASA.
The closest we've been with cisco is that they were able to ping the networks, (1841 side was successfully pinging 10.21.30.x and ASA side was successfully pinging 10.12.0.0) BUT every time they got it this way, inside hosts in the 1841 network were not able to go out to the internet