My PIX525 firewall is configured for S2S (already 3 more S2S vpn is configured) with Juniper firewall at the other end.
The problem I'm now facing is that although the tunnel is getting up but no traffic can pass between end-to-end.
When I gave sh crypto ipsec sa I could see following
pixfirewall(config)# sh crypto ipsec sa
Crypto map tag: dyngroup, seq num: 30, local addr: 220.127.116.11
local ident (addr/mask/prot/port): (FIX_CLNT_TST1/255.255.255.255/0/0)
remote ident (addr/mask/prot/port): (192.168.36.2/255.255.255.255/0/0)
#pkts encaps: 0, #pkts encrypt: 0, #pkts digest: 0
#pkts decaps: 247, #pkts decrypt: 247, #pkts verify: 247
#pkts compressed: 0, #pkts decompressed: 0
#pkts not compressed: 0, #pkts comp failed: 0, #pkts decomp failed: 0
#send errors: 0, #recv errors: 228
Can anyone advise me why I'm not able to ping/access the other side of the lan (Juniper firewall side) also I want to make sure whether there's anything wrong in myside (my configuration).
Thanks in advance.
For ready reference I have attached the VPN configuration in my PIX firewall.