cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
237
Views
0
Helpful
1
Replies

L2L vpn - unable to access one subnet -Urgent

somnath21
Level 1
Level 1

hi,

I have configured L2L vpn between site A and B.In site A i have 3 subnets..

10.138.78.0/24,10.138.79.0/24,10.138.80.0/24.In site B also i have 3 subnets 172.16.0.0/24,162.29.0.0/24,162.30.0.0/24

Now the problem is from site A i am able to access 172.29.0.0 and 172.30.0.0 network but i am unable to access 172.16.0.0 network.

pls find the acl config..

SITE A:

object-group network HQO

network-object 172.16.0.0 255.255.0.0

network-object 172.29.0.0 255.255.0.0

network-object 172.30.0.0 255.255.252.0

object-group network LOCAL

network-object 10.138.78.0 255.255.255.0

network-object 10.138.79.0 255.255.255.0

network-object 10.138.80.0 255.255.255.0

access-list HQO extended permit ip object-group LOCAL object-group HQO

SITE B:

access-list CHI line 1 extended permit ip object-group LOCAL object-group CHI 0xad2ed804

access-list CHI line 1 extended permit ip 172.16.0.0 255.255.0.0 10.138.78.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.16.0.0 255.255.0.0 10.138.79.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.16.0.0 255.255.0.0 10.138.80.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.29.0.0 255.255.0.0 10.138.78.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.29.0.0 255.255.0.0 10.138.79.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.29.0.0 255.255.0.0 10.138.80.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.30.0.0 255.255.252.0 10.138.78.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.30.0.0 255.255.252.0 10.138.79.0 255.255.255.0

access-list CHI line 1 extended permit ip 172.30.0.0 255.255.252.0 10.138.80.0 255.255.255.0

pls guide me to resolve this issue..

thanks,

james

1 Reply 1

husycisco
Level 7
Level 7

Hi James

Please attach your full sanitized configs

Regards

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: