<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Site to Site VPN internal host issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054207#M438737</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's it..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check the Nat configuration&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network NETWORK_OBJ_172.16.30.0_27&lt;/P&gt;&lt;P&gt; subnet 172.16.30.0 255.255.255.224&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static NETWORK_OBJ_192.168.3.0_24 NETWORK_OBJ_192.168.3.0_24 destination static NETWORK_OBJ_172.16.30.0_27 NETWORK_OBJ_172.16.30.0_27&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static NETWORK_OBJ_192.168.3.0_24 NETWORK_OBJ_192.168.3.0_24 destination static NETWORK_OBJ_192.168.1.0_24 NETWORK_OBJ_192.168.1.0_24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You did it for the 172.16.30 instead of 172.16.40&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the post that help, for us that is more importan than a thanks &lt;SPAN __jive_emoticon_name="wink" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/wink.gif"&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 31 Aug 2012 22:38:34 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2012-08-31T22:38:34Z</dc:date>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054201#M438731</link>
      <description>&lt;P&gt;I have a quick question regarding something I might be missing.&amp;nbsp; We have a site to site VPN set up with an ASA 5510 on our end and a partner Cisco Router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The VPN is live and our partner can ping across to my external interface and I can ping down the tunnel to their gateway but we can't ping any machines beyond of endpoints of the VPN tunnel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We need communication between our 2 local lans, specifically between 2 machines for transactions on port 104.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Even without the access list to allow the 2 internal machines on each network to communicate, we can't ping or communicate with any machines beyond the endpoints.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help or suggestions is greatly appreciated.&amp;nbsp; I want to establish communication between the 2 internal networks befor elocking down specific communications with access lists.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:48:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054201#M438731</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2019-03-11T23:48:37Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054202#M438732</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you see the tunnel up with the following comamnds:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-show crypto isakmp sa&lt;/P&gt;&lt;P&gt;-show crypto ipsec sa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want you can place the configuration of both devices on this topic so I can review it for you.&lt;/P&gt;&lt;P&gt;What are the 2 PC's that should communicate with each other.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 21:02:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054202#M438732</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-31T21:02:32Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054203#M438733</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes the tunnel is up with those 2 commands.&amp;nbsp; LEt me grab the config and I will post it up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 21:08:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054203#M438733</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T21:08:51Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054204#M438734</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; file attached.&amp;nbsp; The tunnel we are having issues with is the zz.zz.zz.zz tunnel.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 21:36:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054204#M438734</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T21:36:32Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054205#M438735</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So what is the other side of the tunnel local range?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you let me know that as I can see something weird on the config?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:19:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054205#M438735</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-31T22:19:20Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054206#M438736</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; sure.&amp;nbsp; it is 172.28.40.0/24&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:24:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054206#M438736</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T22:24:32Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054207#M438737</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's it..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check the Nat configuration&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network NETWORK_OBJ_172.16.30.0_27&lt;/P&gt;&lt;P&gt; subnet 172.16.30.0 255.255.255.224&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static NETWORK_OBJ_192.168.3.0_24 NETWORK_OBJ_192.168.3.0_24 destination static NETWORK_OBJ_172.16.30.0_27 NETWORK_OBJ_172.16.30.0_27&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static NETWORK_OBJ_192.168.3.0_24 NETWORK_OBJ_192.168.3.0_24 destination static NETWORK_OBJ_192.168.1.0_24 NETWORK_OBJ_192.168.1.0_24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You did it for the 172.16.30 instead of 172.16.40&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the post that help, for us that is more importan than a thanks &lt;SPAN __jive_emoticon_name="wink" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/wink.gif"&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:38:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054207#M438737</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-31T22:38:34Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054208#M438738</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; well the 172.16.30.0 is my VPN address network for Cisco Ipsec client based vpn&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the 172.28.40.0 is the internal on the other side of tunnel #2.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so do i still need the nat statements for the point to point vpn?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:42:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054208#M438738</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T22:42:30Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054209#M438739</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Of course you need &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #ffffff; border-collapse: collapse; font-size: 11.818181991577148px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;Remember to rate all of the post that help, for us that is more importan than a thanks &lt;SPAN __jive_emoticon_name="wink"&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:45:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054209#M438739</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-31T22:45:22Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054210#M438740</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; yes makes sense now going through the logic.&amp;nbsp; same statements just with the other network?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for the help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:47:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054210#M438740</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T22:47:42Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054211#M438741</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is correct,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you do not have any other question please mark the question as answered.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #ffffff; border-collapse: collapse; font-size: 11.818181991577148px; list-style: none; font-family: Arial, verdana, sans-serif;"&gt;Remember to rate all of the post that help, for us that is more importan than a thanks &lt;SPAN __jive_emoticon_name="wink"&gt;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:54:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054211#M438741</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-08-31T22:54:45Z</dc:date>
    </item>
    <item>
      <title>Site to Site VPN internal host issue</title>
      <link>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054212#M438742</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; no problem.&amp;nbsp; going to test then will close it out.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 22:55:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/site-to-site-vpn-internal-host-issue/m-p/2054212#M438742</guid>
      <dc:creator>bchyka</dc:creator>
      <dc:date>2012-08-31T22:55:53Z</dc:date>
    </item>
  </channel>
</rss>

