<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic VPN pool cannot ping inside interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446048#M269235</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Apply the access-group policy for the access from the outside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip object-group &lt;SPAN style="font-size: 10pt;"&gt;VPNpool &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;any&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group 110 in interface outside &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 21 Feb 2014 05:00:34 GMT</pubDate>
    <dc:creator>vishaw jasrotia</dc:creator>
    <dc:date>2014-02-21T05:00:34Z</dc:date>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446047#M269234</link>
      <description>&lt;P&gt;Hello Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am setting up a cisco asa 5505 FW. I can get interent on the FW and i can connect to the vpn client fine and get a address from the vpn pool i created. The only issue is that i cannot reach the inside interface from the VPN pool. Can someone please assist asap.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Below is my current config....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA Version 8.2(5) &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname LCCVPN&lt;/P&gt;&lt;P&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;/P&gt;&lt;P&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 10.0.0.4 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; pppoe client vpdn group lccvpn&lt;/P&gt;&lt;P&gt; ip address pppoe &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone FJST 12&lt;/P&gt;&lt;P&gt;object-group network LAN&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network VPNpool&lt;/P&gt;&lt;P&gt; network-object 10.20.12.0 255.255.255.0&lt;/P&gt;&lt;P&gt;access-list Network-List standard permit 10.0.0.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list Network-List1 standard permit 10.0.0.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging timestamp&lt;/P&gt;&lt;P&gt;logging trap informational&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;logging permit-hostdown&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool VPNPool 10.20.12.1-10.20.12.254 mask 255.255.255.0&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-613.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 x.x.x.x 1&lt;/P&gt;&lt;P&gt;route inside 10.0.0.0 255.0.0.0 10.0.0.4 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;timeout floating-conn 0:00:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;aaa authorization command LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;http 192.168.252.0 255.255.255.128 inside&lt;/P&gt;&lt;P&gt;http 10.2.2.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 10.0.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community *****&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map Outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto isakmp enable outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 5&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;ssh 10.0.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;console timeout 5&lt;/P&gt;&lt;P&gt;vpdn group lccvpn request dialout pppoe&lt;/P&gt;&lt;P&gt;vpdn group lccvpn localname navinisp&lt;/P&gt;&lt;P&gt;vpdn group lccvpn ppp authentication pap&lt;/P&gt;&lt;P&gt;vpdn username navinisp password ***** &lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dhcpd auto_config outside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 10.0.0.10-10.0.0.30 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;no threat-detection statistics tcp-intercept&lt;/P&gt;&lt;P&gt;webvpn&lt;/P&gt;&lt;P&gt; enable outside&lt;/P&gt;&lt;P&gt; svc image disk0:/anyconnect-win-2.3.0254-k9.pkg 1 regex "Windows NT"&lt;/P&gt;&lt;P&gt; svc enable&lt;/P&gt;&lt;P&gt;group-policy SSLVPN internal&lt;/P&gt;&lt;P&gt;group-policy SSLVPN attributes&lt;/P&gt;&lt;P&gt; banner value This is a private system&lt;/P&gt;&lt;P&gt; banner value Access to this computer system is limited to authorised users only.&lt;/P&gt;&lt;P&gt; banner value This authorization must be obtained in writing from the system owner&lt;/P&gt;&lt;P&gt; banner value Unauthorised users may be subject to prosecution under the Crimes&lt;/P&gt;&lt;P&gt; banner value Act or State legislation&lt;/P&gt;&lt;P&gt; banner value &lt;/P&gt;&lt;P&gt; banner value All accesses to this service are logged&lt;/P&gt;&lt;P&gt; banner value All information and details on this system are private,&lt;/P&gt;&lt;P&gt; banner value confidential and must not be disclosed&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol svc &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; default-domain value tfl.internal&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt;group-policy TechM_VPN_SSL internal&lt;/P&gt;&lt;P&gt;group-policy TechM_VPN_SSL attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol svc &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt;group-policy DfltGrpPolicy attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol webvpn&lt;/P&gt;&lt;P&gt;group-policy VPN-Client internal&lt;/P&gt;&lt;P&gt;group-policy VPN-Client attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol IPSec &lt;/P&gt;&lt;P&gt; ip-comp enable&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; default-domain value tfl.internal&lt;/P&gt;&lt;P&gt; user-authentication-idle-timeout 30&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt; webvpn&lt;/P&gt;&lt;P&gt;&amp;nbsp; svc compression deflate&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username AutikoL password 5lj6NPIi/MYVQYVN encrypted&lt;/P&gt;&lt;P&gt;username AutikoL attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy VPN-Client&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol IPSec &lt;/P&gt;&lt;P&gt; group-lock value Client-VPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;username admin password f3UhLvUj1QsXsuK7 encrypted&lt;/P&gt;&lt;P&gt;username infra password /l3N1ysL5h1bzNBn encrypted privilege 15&lt;/P&gt;&lt;P&gt;username Shoebh password 9MMH3XLR8ARsN5Cf encrypted&lt;/P&gt;&lt;P&gt;username Shoebh attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;username navindars password hKEmegKvbMayue/0 encrypted privilege 15&lt;/P&gt;&lt;P&gt;username navindars attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt;username LCCVPN password KKr3nUkVs/K4GsoE encrypted&lt;/P&gt;&lt;P&gt;username LCCVPN attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group VPN-SSL type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group VPN-SSL general-attributes&lt;/P&gt;&lt;P&gt; address-pool VPNPool&lt;/P&gt;&lt;P&gt; default-group-policy SSLVPN&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN type remote-access&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN general-attributes&lt;/P&gt;&lt;P&gt; address-pool VPNPool&lt;/P&gt;&lt;P&gt; default-group-policy VPN-Client&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN ipsec-attributes&lt;/P&gt;&lt;P&gt; pre-shared-key *****&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225 &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect esmtp &lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context &lt;/P&gt;&lt;P&gt;no call-home reporting anonymous&lt;/P&gt;&lt;P&gt;Cryptochecksum:c6f5f803a4a33a27bf2ddc912aa8966a&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:48:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446047#M269234</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2019-03-12T03:48:17Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446048#M269235</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Apply the access-group policy for the access from the outside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip object-group &lt;SPAN style="font-size: 10pt;"&gt;VPNpool &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;any&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-group 110 in interface outside &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:00:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446048#M269235</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T05:00:34Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446049#M269236</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks a lot for&amp;nbsp; the reply Vishwa, i tried that but it still did not work. Anything else i can try?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:16:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446049#M269236</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T05:16:52Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446050#M269237</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 10.0.0.4 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; pppoe client vpdn group lccvpn&lt;/P&gt;&lt;P&gt; ip address pppoe &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone FJST 12&lt;/P&gt;&lt;P&gt;object-group network LAN&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network VPNpool&lt;/P&gt;&lt;P&gt; network-object 10.20.12.0 255.255.255.0&lt;/P&gt;&lt;P&gt;access-list Network-List standard permit 10.0.0.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list Network-List1 standard permit 10.0.0.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip object-group VPNpool any &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging timestamp&lt;/P&gt;&lt;P&gt;logging trap informational&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;logging permit-hostdown&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool VPNPool 10.20.12.1-10.20.12.254 mask 255.255.255.0&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-613.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;access-group 110 in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 x.x.x.x 1&lt;/P&gt;&lt;P&gt;route inside 10.0.0.0 255.0.0.0 10.0.0.4 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;timeout floating-conn 0:00:00&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;aaa authorization command LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;http 192.168.252.0 255.255.255.128 inside&lt;/P&gt;&lt;P&gt;http 10.2.2.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 10.0.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community *****&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map Outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto isakmp enable outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 5&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp nat-traversal 30&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;ssh 10.0.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;console timeout 5&lt;/P&gt;&lt;P&gt;vpdn group lccvpn request dialout pppoe&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;vpdn group lccvpn localname navinisp&lt;/P&gt;&lt;P&gt;vpdn group lccvpn ppp authentication pap&lt;/P&gt;&lt;P&gt;vpdn username navinisp password ***** &lt;/P&gt;&lt;P&gt;dhcpd auto_config outside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 10.0.0.10-10.0.0.30 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;no threat-detection statistics tcp-intercept&lt;/P&gt;&lt;P&gt;webvpn&lt;/P&gt;&lt;P&gt; enable outside&lt;/P&gt;&lt;P&gt; svc image disk0:/anyconnect-win-2.3.0254-k9.pkg 1 regex "Windows NT"&lt;/P&gt;&lt;P&gt; svc enable&lt;/P&gt;&lt;P&gt;group-policy SSLVPN internal&lt;/P&gt;&lt;P&gt;group-policy SSLVPN attributes&lt;/P&gt;&lt;P&gt; banner value This is a private system&lt;/P&gt;&lt;P&gt; banner value Access to this computer system is limited to authorised users only.&lt;/P&gt;&lt;P&gt; banner value This authorization must be obtained in writing from the system owner&lt;/P&gt;&lt;P&gt; banner value Unauthorised users may be subject to prosecution under the Crimes&lt;/P&gt;&lt;P&gt; banner value Act or State legislation&lt;/P&gt;&lt;P&gt; banner value &lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; banner value All accesses to this service are logged&lt;/P&gt;&lt;P&gt; banner value All information and details on this system are private,&lt;/P&gt;&lt;P&gt; banner value confidential and must not be disclosed&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol svc &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; default-domain value tfl.internal&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt;group-policy TechM_VPN_SSL internal&lt;/P&gt;&lt;P&gt;group-policy TechM_VPN_SSL attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol svc &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt;group-policy DfltGrpPolicy attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol webvpn&lt;/P&gt;&lt;P&gt;group-policy VPN-Client internal&lt;/P&gt;&lt;P&gt;group-policy VPN-Client attributes&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol IPSec &lt;/P&gt;&lt;P&gt; ip-comp enable&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Network-List1&lt;/P&gt;&lt;P&gt; default-domain value tfl.internal&lt;/P&gt;&lt;P&gt; user-authentication-idle-timeout 30&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; address-pools value VPNPool&lt;/P&gt;&lt;P&gt; webvpn&lt;/P&gt;&lt;P&gt;&amp;nbsp; svc compression deflate&lt;/P&gt;&lt;P&gt;username AutikoL password 5lj6NPIi/MYVQYVN encrypted&lt;/P&gt;&lt;P&gt;username AutikoL attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy VPN-Client&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol IPSec &lt;/P&gt;&lt;P&gt; group-lock value Client-VPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;username admin password f3UhLvUj1QsXsuK7 encrypted&lt;/P&gt;&lt;P&gt;username infra password /l3N1ysL5h1bzNBn encrypted privilege 15&lt;/P&gt;&lt;P&gt;username Shoebh password 9MMH3XLR8ARsN5Cf encrypted&lt;/P&gt;&lt;P&gt;username Shoebh attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;username navindars password hKEmegKvbMayue/0 encrypted privilege 15&lt;/P&gt;&lt;P&gt;username navindars attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt;username LCCVPN password KKr3nUkVs/K4GsoE encrypted&lt;/P&gt;&lt;P&gt;username LCCVPN attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy SSLVPN&lt;/P&gt;&lt;P&gt; service-type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group VPN-SSL type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group VPN-SSL general-attributes&lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; address-pool VPNPool&lt;/P&gt;&lt;P&gt; default-group-policy SSLVPN&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN general-attributes&lt;/P&gt;&lt;P&gt; address-pool VPNPool&lt;/P&gt;&lt;P&gt; default-group-policy VPN-Client&lt;/P&gt;&lt;P&gt;tunnel-group Client-VPN ipsec-attributes&lt;/P&gt;&lt;P&gt; pre-shared-key *****&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225 &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh &lt;/P&gt;&lt;P&gt;&amp;lt;--- More ---&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect esmtp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context &lt;/P&gt;&lt;P&gt;no call-home reporting anonymous&lt;/P&gt;&lt;P&gt;Cryptochecksum:52035bac4531ee82f99fadaa87730d95&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:23:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446050#M269237</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T05:23:36Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446051#M269238</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please take the packet trace output&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;packet-tracer input outside tcp &lt;SOURCE ip=""&gt; &lt;PORT&gt; &lt;DESTINATION ip=""&gt; &lt;PORT&gt;&lt;/PORT&gt;&lt;/DESTINATION&gt;&lt;/PORT&gt;&lt;/SOURCE&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:24:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446051#M269238</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T05:24:15Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446052#M269239</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;LCCVPN# packet-tracer input outside tcp 10.20.12.2 echo 10.0.0.12 echo&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Implicit Rule&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;MAC Access list&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ROUTE-LOOKUP&lt;/P&gt;&lt;P&gt;Subtype: input&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;in&amp;nbsp;&amp;nbsp; 10.0.0.0&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.0&amp;nbsp;&amp;nbsp; inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 3&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype: log&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;access-group 110 in interface outside&lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip object-group VPNpool any&lt;/P&gt;&lt;P&gt;object-group network VPNpool&lt;/P&gt;&lt;P&gt; network-object 10.20.12.0 255.255.255.0&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 4&lt;/P&gt;&lt;P&gt;Type: IP-OPTIONS&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 5&lt;/P&gt;&lt;P&gt;Type: CP-PUNT&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 6&lt;/P&gt;&lt;P&gt;Type: WEBVPN-SVC&lt;/P&gt;&lt;P&gt;Subtype: in&lt;/P&gt;&lt;P&gt;Result: DROP&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: inside&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: drop&lt;/P&gt;&lt;P&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:29:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446052#M269239</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T05:29:02Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446053#M269240</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey ,&lt;/P&gt;&lt;P&gt;Try this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;no access-list 110 extended permit ip object-group VPNpool any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;no access-group 110 in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;access-list 110 extended permit ip oany any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;access-group 110 in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:39:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446053#M269240</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T05:39:25Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446054#M269241</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I tried that too and it still doesnt work....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:47:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446054#M269241</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T05:47:29Z</dc:date>
    </item>
    <item>
      <title>Re: VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446055#M269242</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also modify your NAT statement&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list NONAT permit ip &lt;SPAN style="font-size: 10pt;"&gt;10.0.0.0 &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;255.255.255.0 &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;10.20.12.0 &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;255.255.255.0&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 0 access-list NONAT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this gona solve your problem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:50:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446055#M269242</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T05:50:57Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446056#M269243</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes that finally made it work...thanks a lot for the help bro much appreciated....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:56:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446056#M269243</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T05:56:54Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446057#M269244</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Always welcome...:)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:58:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446057#M269244</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T05:58:42Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446058#M269245</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sorry to disturb u again bro but just 1 more thing....i can ping the equipment on the inside interface but i cannot ping the gateway 10.0.0.4....any idea why i cannot do that?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C:\Users\navindar.singh&amp;gt;ping 10.0.0.12&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pinging 10.0.0.12 with 32 bytes of data:&lt;/P&gt;&lt;P&gt;Reply from 10.0.0.12: bytes=32 time=18ms TTL=128&lt;/P&gt;&lt;P&gt;Reply from 10.0.0.12: bytes=32 time=20ms TTL=128&lt;/P&gt;&lt;P&gt;Reply from 10.0.0.12: bytes=32 time=20ms TTL=128&lt;/P&gt;&lt;P&gt;Reply from 10.0.0.12: bytes=32 time=16ms TTL=128&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ping statistics for 10.0.0.12:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),&lt;/P&gt;&lt;P&gt;Approximate round trip times in milli-seconds:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Minimum = 16ms, Maximum = 20ms, Average = 18ms&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C:\Users\navindar.singh&amp;gt;ping 10.0.0.4&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pinging 10.0.0.4 with 32 bytes of data:&lt;/P&gt;&lt;P&gt;Request timed out.&lt;/P&gt;&lt;P&gt;Request timed out.&lt;/P&gt;&lt;P&gt;Request timed out.&lt;/P&gt;&lt;P&gt;Request timed out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ping statistics for 10.0.0.4:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Packets: Sent = 4, Received = 0, Lost = 4 (100% loss),&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:02:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446058#M269245</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T06:02:09Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446059#M269247</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Phase: 1&lt;/P&gt;&lt;P&gt;Type: ROUTE-LOOKUP&lt;/P&gt;&lt;P&gt;Subtype: input&lt;/P&gt;&lt;P&gt;Result: ALLOW&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;in&amp;nbsp;&amp;nbsp; 10.0.0.4&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 255.255.255.255 identity&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Phase: 2&lt;/P&gt;&lt;P&gt;Type: ACCESS-LIST&lt;/P&gt;&lt;P&gt;Subtype:&lt;/P&gt;&lt;P&gt;Result: DROP&lt;/P&gt;&lt;P&gt;Config:&lt;/P&gt;&lt;P&gt;Implicit Rule&lt;/P&gt;&lt;P&gt;Additional Information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result:&lt;/P&gt;&lt;P&gt;input-interface: outside&lt;/P&gt;&lt;P&gt;input-status: up&lt;/P&gt;&lt;P&gt;input-line-status: up&lt;/P&gt;&lt;P&gt;output-interface: NP Identity Ifc&lt;/P&gt;&lt;P&gt;output-status: up&lt;/P&gt;&lt;P&gt;output-line-status: up&lt;/P&gt;&lt;P&gt;Action: drop&lt;/P&gt;&lt;P&gt;Drop-reason: (acl-drop) Flow is denied by configured rule&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:04:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446059#M269247</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T06:04:52Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446060#M269249</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In ASA there is default policy that , you can't ping the gateway (ASA interface ip) from the different interface subnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In sumup you can ping the ASA interface IP from&amp;nbsp; respective&amp;nbsp; pool only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:10:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446060#M269249</guid>
      <dc:creator>vishaw jasrotia</dc:creator>
      <dc:date>2014-02-21T06:10:53Z</dc:date>
    </item>
    <item>
      <title>VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446061#M269251</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;oh ok....thanks a lot bro..have a great day....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:13:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/2446061#M269251</guid>
      <dc:creator>Navindar Singh</dc:creator>
      <dc:date>2014-02-21T06:13:43Z</dc:date>
    </item>
    <item>
      <title>Re: VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/4187968#M1076067</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I hope you are fine.&lt;/P&gt;&lt;P&gt;I'm sorry to reply to this post because i have the same issue. I don't know if my config is complete or not. I tried to add NONAT, ACL,... rules to try to resolve the issue but it don't work.&lt;/P&gt;&lt;P&gt;please someone help me.&lt;/P&gt;&lt;P&gt;Thank you very much.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ciscoasa# sh run&lt;BR /&gt;ASA Version 8.2(5)&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;BR /&gt;names&lt;BR /&gt;name 192.168.0.1 IPSec-Gateway&lt;BR /&gt;name 192.168.0.0 RemoteIPSec-Pool&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt;switchport access vlan 2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/4&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/5&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/7&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;nameif inside&lt;BR /&gt;security-level 100&lt;BR /&gt;ip address 192.168.150.2 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan2&lt;BR /&gt;nameif outside&lt;BR /&gt;security-level 0&lt;BR /&gt;ip address X.X.X.Y 255.255.255.248&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;access-list inside_nat0_outbound extended permit ip any 192.168.0.96 255.255.255.224&lt;BR /&gt;access-list Remote-Tunnel_splitTunnelAcl standard permit 192.168.150.0 255.255.255.0&lt;BR /&gt;access-list DefaultRAGroup_splitTunnelAcl standard permit 192.168.150.0 255.255.255.0&lt;BR /&gt;access-list RemoteIPsec standard permit RemoteIPSec-Pool 255.255.255.0&lt;BR /&gt;access-list 110 extended permit ip any any&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;ip local pool testpool 192.168.0.10-192.168.0.15&lt;BR /&gt;ip local pool RemoteIPSec-Pool 192.168.0.100-192.168.0.120 mask 255.255.255.0&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;global (inside) 1 interface&lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;global (outside) 2 192.168.20.10&lt;BR /&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;BR /&gt;access-group 110 in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 X.X.X.X 1&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.150.0 255.255.255.0 inside&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac&lt;BR /&gt;.&lt;BR /&gt;.&lt;BR /&gt;.&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;crypto ipsec security-association lifetime seconds 28800&lt;BR /&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto dynamic-map dyn1 1 set pfs group1&lt;BR /&gt;crypto dynamic-map dyn1 1 set transform-set FirstSet TRANS_ESP_3DES_SHA&lt;BR /&gt;crypto dynamic-map dyn1 1 set reverse-route&lt;BR /&gt;crypto map mymap 1 ipsec-isakmp dynamic dyn1&lt;BR /&gt;crypto map mymap interface outside&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint0&lt;BR /&gt;enrollment terminal&lt;BR /&gt;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint1&lt;BR /&gt;enrollment self&lt;BR /&gt;subject-name CN=ciscoasa&lt;BR /&gt;crl configure&lt;BR /&gt;crypto ca certificate chain ASDM_TrustPoint0&lt;BR /&gt;...&lt;BR /&gt;crypto isakmp enable outside&lt;BR /&gt;crypto isakmp policy 1&lt;BR /&gt;authentication pre-share&lt;BR /&gt;encryption 3des&lt;BR /&gt;hash sha&lt;BR /&gt;group 2&lt;BR /&gt;lifetime 43200&lt;BR /&gt;crypto isakmp policy 70&lt;BR /&gt;authentication pre-share&lt;BR /&gt;encryption aes-256&lt;BR /&gt;hash md5&lt;BR /&gt;group 5&lt;BR /&gt;lifetime 86400&lt;BR /&gt;crypto isakmp policy 90&lt;BR /&gt;authentication rsa-sig&lt;BR /&gt;encryption aes-256&lt;BR /&gt;hash md5&lt;BR /&gt;group 5&lt;BR /&gt;lifetime 86400&lt;BR /&gt;crypto isakmp policy 110&lt;BR /&gt;authentication pre-share&lt;BR /&gt;encryption aes&lt;BR /&gt;hash sha&lt;BR /&gt;group 5&lt;BR /&gt;lifetime 86400&lt;BR /&gt;crypto isakmp policy 130&lt;BR /&gt;authentication pre-share&lt;BR /&gt;encryption 3des&lt;BR /&gt;hash sha&lt;BR /&gt;group 1&lt;BR /&gt;lifetime 86400&lt;BR /&gt;telnet 0.0.0.0 0.0.0.0 inside&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd auto_config outside&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;webvpn&lt;BR /&gt;group-policy DefaultRAGroup internal&lt;BR /&gt;group-policy DefaultRAGroup attributes&lt;BR /&gt;vpn-tunnel-protocol IPSec l2tp-ipsec&lt;BR /&gt;default-domain value local.domain&lt;BR /&gt;group-policy Remote-VPN internal&lt;BR /&gt;group-policy Remote-VPN attributes&lt;BR /&gt;dns-server value 192.168.150.200&lt;BR /&gt;vpn-filter value RemoteIPsec&lt;BR /&gt;vpn-tunnel-protocol IPSec&lt;BR /&gt;split-tunnel-policy tunnelspecified&lt;BR /&gt;split-tunnel-network-list value Remote-Tunnel_splitTunnelAcl&lt;BR /&gt;default-domain value local.domain&lt;BR /&gt;username testuser password IqY6lTColo8VIF24 encrypted&lt;BR /&gt;username testuser attributes&lt;BR /&gt;vpn-group-policy IPSec-GroupPolicy1&lt;BR /&gt;username test password P4ttSyrm33SV8TYp encrypted privilege 15&lt;BR /&gt;username arzoum password BLt4wvI5cO4pWEIY encrypted privilege 0&lt;BR /&gt;username arzoum attributes&lt;BR /&gt;vpn-group-policy Remote-VPN&lt;BR /&gt;tunnel-group DefaultRAGroup general-attributes&lt;BR /&gt;default-group-policy DefaultRAGroup&lt;BR /&gt;tunnel-group DefaultRAGroup ipsec-attributes&lt;BR /&gt;pre-shared-key *****&lt;BR /&gt;tunnel-group DefaultRAGroup ppp-attributes&lt;BR /&gt;no authentication chap&lt;BR /&gt;authentication ms-chap-v2&lt;BR /&gt;tunnel-group Remote-VPN type remote-access&lt;BR /&gt;tunnel-group Remote-VPN general-attributes&lt;BR /&gt;address-pool RemoteIPSec-Pool&lt;BR /&gt;default-group-policy Remote-VPN&lt;BR /&gt;tunnel-group Remote-VPN ipsec-attributes&lt;BR /&gt;pre-shared-key *****&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 10:46:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/4187968#M1076067</guid>
      <dc:creator>arzoumilboudo26166</dc:creator>
      <dc:date>2020-11-24T10:46:37Z</dc:date>
    </item>
    <item>
      <title>Re: VPN pool cannot ping inside interface</title>
      <link>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/4188049#M1076080</link>
      <description>&lt;P&gt;This is the&amp;nbsp;&lt;SPAN&gt;walkthrough, i followed :&amp;nbsp;&lt;A href="https://blogs.uw.edu/curreri/using-the-cisco-asa-5505-as-a-vpn-server-with-the-vpn-client-software/" target="_blank"&gt;https://blogs.uw.edu/curreri/using-the-cisco-asa-5505-as-a-vpn-server-with-the-vpn-client-software/&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Waiting your help please.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 12:53:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-pool-cannot-ping-inside-interface/m-p/4188049#M1076080</guid>
      <dc:creator>arzoumilboudo26166</dc:creator>
      <dc:date>2020-11-24T12:53:50Z</dc:date>
    </item>
  </channel>
</rss>

