cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
254
Views
0
Helpful
2
Replies

Pix 515 and VPN

whiteford
Level 1
Level 1

We have a Pix 515 that VPN's into our network using a Concentrator. For some reason the VPN will stay up but we can't ping or talking to each other from either side of the network.

I just popped to the remote side where the VPN goes to and I pinged our subnets back at where the concentrator is and after a few request time outs each subnet came up.

2 Replies 2

bamnocadmin
Level 1
Level 1

Hello,

Please check the following:

1. Network Lists on PIX (access-list for interested traffic) and Concentrator (Network Lists for Local and Remote Networks) - they have to match;

2. Routing behind PIX and Concentrator.

Please post your configs.

Thanks.

Sorry I'm on my blackberry.

It seems once the IKE tunnel is up only PCs on the side of the pix can bring up the ipsec tunnels on the side of the concentrator. If a user pings a subnet on the concentrator side it pings after a while, then the subnet on the side of the concentrator can ping back, but only when the side of the pix starts the negotiation

Review Cisco Networking products for a $25 gift card