Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

PIX Ver 7.0 VPN Issue

PIX 535 with Ver 7.0(4) is used for multiple IPSEC VPN Tunnels. One of the Tunnel to a particular Location gives below problem: -

One of the IP Subnet (10.201.0.0) across the VPN Tunnel stops responding. Though the VPN tunnel remains up and also the other subnets across the same Tunnel to same location are reachable, only one subnet goes down. This happens randomly.

Subnet starts pinging after reloading PIX.

Attached here the Show Run of PIX with Problematic Tunnel config mark RED.

1 REPLY
Gold

Re: PIX Ver 7.0 VPN Issue

i believe the issue is not the local pix. it's a bit hard to say that the local pix does everything right but one subnet.

i suggest you to verify the remote peer device.

on the local pix, do "sh cry ips sa" to verify the number of packet being encrypted/decrypted, and do "deb ic t" to verify whether the echo request and reply flow.

116
Views
0
Helpful
1
Replies
CreatePlease login to create content