02-27-2014 04:31 PM - edited 02-21-2020 07:32 PM
Have an ASA, which I can connect to with an Adroid AnyConnect client from the internet.
Here is the config for that ASA:
http://pastebin.com/raw.php?i=nz8pmYPj
Have another ASA, which has a site-to-site VPN tunnel established with the first ASA.
Here is the config for that ASA:
http://pastebin.com/raw.php?i=m5hX5kZy
Currently, the AnyConnect client can ping local devices on the main ASA inside subnet.
It can also ping the inside interface of the second ASA.
However, it cannot ping other devices on the inside subnet of the second ASA, why?
02-28-2014 01:37 PM
Update: Created diagram to better show what's happening.
02-28-2014 03:36 PM
This line fixed it, in the Kanai ASA config:
access-list out-in extended permit ip 192.168.99.0 255.255.255.0 any
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide