Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
Community Member

ASA VPN Tunnel no Win 2012 R2 to Win 2012 R2 communcation

A peer created a VPN tunnel between two offices using two 5512, both running 8.6(1)2.  The tunnel works great, for everything except the Windows 2012 R2 servers.  The 2012 R2 servers cannot communicate with 2012 R2 servers across the tunnel, but they can communicate with all the other non-2012 R2 devices. The same 2012 R2 servers can ping and RDP to Win 2008 R2, Win 2003 R2 and other non-Windows devices.

This behavior is happening in both directions.  We can't ping and we can't RDP.  Prior to the tunnel, we had MPLS circuits.  The 2012 R2 boxes could communicate with 2012 R2 across the MPLS circuits.  I attempted some constant pings and RDP sessions across the tunnel, but I did not see anything in the ASDM Syslog messages on either ASA.

1 REPLY
Community Member

I solved this by entering

I solved this by entering "fixup protocol ICMP" on both ASA's.

58
Views
0
Helpful
1
Replies
CreatePlease to create content