Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

connctivity issues in a PIX to PIX VPN

Hi All

I have setup a site to site VPN using PIX firewalls at both ends.The connectivity works fine when interesting traffic is generated from my network to the remote network and we see hits in the access-list on both PIXs. However when my counterpart at the remote network tries to generate interesting traffic matching the access-list on his end the connectivity does not work. He sees the access-list counters go up on his PIX, but I do not see any increase in the access-list counters on my PIX. The debug output on his PIX is giving a message SA retransmit when he generates interesting traffic from his network. We have checked that the access-list matches on both ends. The preshare key is correct as I am able to connect from my hosts to hosts on his network. Is there anything else that I should be checking..

Can someone shed some light as to where things might be going wrong.

Thanks in advance


New Member

Re: connctivity issues in a PIX to PIX VPN

Does he also see the encaps packet counter increasing on his PIX or not? (with "show crypto ipsec sa" command)

CreatePlease login to create content