This is an interesting one.
I have a remote access vpn configured on my asa5520 and that works perfectly ok.
There is a set of segments though I cannot ping from my remote access vpn client but I can ping it from the inside interface of the firewall.
The default route of the client is .1 in the "ip local pool" which I believe is the firewall itself, is it?
But in any case, my client is unable to ping that segment. There is an internal route on the firewall to that segment to the extent the inside interface can ping it... but NOT the client.
Why is that?