10-28-2008 01:42 PM - edited 03-11-2019 07:04 AM
Our ASA5510's recently failed over, and now I have a handful of VPN clients that can connect, but not route anywhere in our network. I'm not sure the configs have been properly synced, but I do not know how to confirm.
10-28-2008 04:06 PM
Silly question, but do the routes from your 'internal' network to the remote VPN clients point to the old 'failed' ASA or to the new ASA? Try checking this first :-)
Cheers
Darren
10-28-2008 04:39 PM
Darren,
They point to the virtual ip address, so that doesn't change on failover. It's only happened to half a dozen people or so. They can connect, but when I monitor the traffic, nothing is being passed. Very strange.
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide