cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
652
Views
0
Helpful
2
Replies

Cisco 5505 ASDM Site to Site VPN static route?

romatlo00
Level 1
Level 1

Hello folks,

 

I am training myself (with youtube) on how to use a Cisco ASA 5505.

I just created a site to site VPN to my Palo Alto 200 from ASDM wizard.  The tunnel is up and green according to PA but unable to ping any local IPs from either side.  It's typical to create a static route on the PA side, which I've done. 

 

Do I need to create a static route on the ASDM to enable communication?  What gateway ip would I use?

I feel like I am really close to getting this to work!  Any comments or suggestions?

1 Accepted Solution

Accepted Solutions

Hi,
You do not need a static route on 5505 ASA, the ASA will know how to route traffic over the VPN to the PA via the ACL you defined to specify the src/dst subnets. You can use packet tracer tool to help troubleshoot further.

HTH

View solution in original post

2 Replies 2

Hi,
You do not need a static route on 5505 ASA, the ASA will know how to route traffic over the VPN to the PA via the ACL you defined to specify the src/dst subnets. You can use packet tracer tool to help troubleshoot further.

HTH

Thank you for responding.  I need to take some training on this ASA.

 

Review Cisco Networking products for a $25 gift card