Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

vpn led active

i establishing a vpn tunnel betwwen 1 asa 5510 and 5 routers 1841.I xas able to establish the tunnel for the first router 1841 however the second show the vpn led of the asa green packets are encrypted but none decrypted and i can not ping from on side to the other here is the output of sh ipsec sa

help

5 REPLIES

Re: vpn led active

Re: vpn led active

What IP are you pinging from and to? Do these IP's reside on the end point devices or on devices behind the end points.

New Member

Re: vpn led active

they reside on both the endpoints and the local subnet

New Member

Re: vpn led active

So to be clear you are sourcing the ping from the 130.223.122.0/24 network to the 128.223.125.0/24 network and vice versa.

Please provide "sh crypto ipsec sa detail" output from both sides.

New Member

Re: vpn led active

Here is yhr output I am able to ping from the asa console to the router's 130.223.122.0/24 SUBNET but the not from the asa 128.223.125.0/24 lan interface

From the rtr (both console and inside) i am able to ping the asa outside interface where crypto map is applied

Thanks

122
Views
0
Helpful
5
Replies
CreatePlease to create content