cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1256
Views
0
Helpful
1
Replies

vpn ipsec to sonicwall multiple vlans

dszuberla
Level 1
Level 1

i have 5510 running 8.3

did a site to site setup via wizard.. can' tping anything

i have a sonicwall vpn setup on the other site.

Both the sonicwall and cisco say there is a connection and i can see the active connection in the logs. however can't ping anything.

i have 41.0 and 42.0 on the cisco side

i have 25.0 and 24.0 on the sonicwall side (amoung other vlans)

i've setup these as objects in cisco. i think have the nats right and i setup in the wizard to access those networks.

attached is my current running config. thoughts?

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

Try to add inspection for icmp:

policy-map global_policy
class inspection_default

     inspect icmp

If it still doesn't work, please share the output of the following to see where it's failing:

show cry isa sa

show cry ipsec sa

View solution in original post

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

Try to add inspection for icmp:

policy-map global_policy
class inspection_default

     inspect icmp

If it still doesn't work, please share the output of the following to see where it's failing:

show cry isa sa

show cry ipsec sa