unable to ping remote peer network from site to site vpn

Answered Question
Oct 17th, 2010
User Badges:

Hi all,


I have a site to site vpn establish between 2 office using a asa5510 and a pix515. On both firewall i set "management-access inside" which suppose to allow me to use the firewall interface to ping the protected private network of the remote peer. I could do this on my asa5510 but could not do the same on my pix515. Pls advise what other settings is required of my pix. Thks in advance.

Correct Answer by Jennifer Halim about 6 years 10 months ago

Are you trying to ping the PIX inside interface, or you are trying to initiate ping from PIX inside interface?


If you are trying to ping the PIX inside interface, pls make sure that you don't have icmp blocks on the inside interface. Check the output of "sh run icmp".

If you are trying to ping from the PIX inside interface, the following command will allow ping: ping inside

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
Correct Answer
Jennifer Halim Sun, 10/17/2010 - 22:14
User Badges:
  • Cisco Employee,

Are you trying to ping the PIX inside interface, or you are trying to initiate ping from PIX inside interface?


If you are trying to ping the PIX inside interface, pls make sure that you don't have icmp blocks on the inside interface. Check the output of "sh run icmp".

If you are trying to ping from the PIX inside interface, the following command will allow ping: ping inside

donnie Sun, 10/17/2010 - 22:19
User Badges:

Hi jen,


Thks, i am trying to ping from the inside interface of the pix firewall. It works.

Actions

This Discussion