So, to find out what can be the problem, we captured packages on both ASA. Packet from the user come through the 5520 and go to 5550. Next, packets returns from ASA5550 to ASA5520, but they doesn't go to the client.
If a take a look to the logs, it shows that ASA5520 is dropping ESP packets that came from ASA5550 by the default deny rule (the last one):
Re: esp packets doesn't return to remote access client behind an
If you do a "sh run all sysopt", do you see the "sysopt connection permit-vpn" command enabled? This command will prevent you from having to explicitly permit the VPN related protocols through an inbound ACL on the outside of your ASA5520.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...