cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
600
Views
0
Helpful
6
Replies

L2L tunnel is up but can not ping peer IP

mahesh18
Level 6
Level 6

Hi Everyone,

L2L tunnel is up between two sites traffic is passing but i can not ping the peer ip?

Need to know how can i make ping work from my end?

Regards

MAhesh

2 Accepted Solutions

Accepted Solutions

Then you need to contact the administrator of the remote box, or if you are the administrator you need to check the access rules applied to the internet facing interface.

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

View solution in original post

I don't know what your configuration is so I can not comment on if it is correct or not.  Pinging the remote peer IP should not go throught the VPN tunnel. If you are unable to ping it from the ASA then there is an access rule denying ping on the remote peer IP.

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

View solution in original post

6 Replies 6

When you say you can not ping peer IP, do you mean the actual peer IP to which the VPN tunnel is terminating or the remote LAN IPs?

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

when i do sh crypto isakmp sa and see the peer ip i mean that IP.

Thats the ip i can not ping.

Then you need to contact the administrator of the remote box, or if you are the administrator you need to check the access rules applied to the internet facing interface.

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

Do you mean to say that config on myside of ASA is good and need to check all the config

on remote ASA?

I don't know what your configuration is so I can not comment on if it is correct or not.  Pinging the remote peer IP should not go throught the VPN tunnel. If you are unable to ping it from the ASA then there is an access rule denying ping on the remote peer IP.

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

Thanks Marius I got it now.

Review Cisco Networking for a $25 gift card