Cisco Support Community
Community Member

VPN 3000 to pix 506e inconsistant http results

We have a VPN3000 connected to a PIX 506e via broadband. On the back end of the 3000 we have 2 seperate connections out of our network. 1 firewalled to the NIPRNET, 1 firewalled to most of the world. All local network services, (email, Intranet, etc) work fine. Traffic destined for the NIPRNET connection appear to work fine. HTTP traffic destined for our Internet link tends to be spotty. Some sites work, some sites don't. There are times when a site will work on 1 machine and not on others. never works, Google always works. Specific route of the traffic is inbound on a 20mbps fiber feed (VPN tunnel from a 506e), thru the VPN 3000 to a 7206VXR, to a Checkpoint Firewall, and back out untunneled thru the same 20mbps fiber feed to a commercial service provider. Again, some sites work, some don't.


Re: VPN 3000 to pix 506e inconsistant http results


This section provides information you can use to troubleshoot your configuration. Additional information on troubleshooting can be found in the following documents:

Troubleshooting Connection Problems on the VPN 3000 Concentrator

IP Security Troubleshooting - Understanding and Using debug Commands

Troubleshooting the PIX to Pass Data Traffic on an Established IPSec Tunnel

CreatePlease to create content