I have an ASA and a PIX site-to-site VPN tunnel set up. The tunnel only establishes when I ping (send interesting traffic) from the ASA, and not vice versa.
Is there a setting or command that will allow either side to establish the tunnel?
I have another tunnel between the ASA and a different PIX, and it CAN be established from either side. Comparing the configurations side by side shows them being virtually identical (except for the IP and preshared key).
Your reply reminded me that if you have several static maps configured as well as a dynamic map, the dynamic map must have the highest sequence number or the static tunnels below it will not initiate a tunnel - the dynamic map grabs the packets and, since a dynamic map is listen-only, a tunnel will never be initiated.
Moving the dynamic map to the highest sequence number (65535) will correct the issue.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...