cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
503
Views
0
Helpful
3
Replies

Site-to-Site VPN issues

tstrode01
Level 1
Level 1

Hello, 

I have created to two site-to-site VPN profiles, one test and one production.  They have separate inside and outside private IPs, but are part of the same network object group.  Both connections show as connected, however, the production connection does not pass traffic.  I do a packet trace from the test ip with no problem.  Doing a packet trace from the production ip and the packet is dropped:  "(acl-drop) Flow denied by configured rule".  What am I missing?

3 Replies 3

Router-support
Level 1
Level 1

Call 1-855-935-7526 US & Canada Toll-Free For Router Help & Support.

 

Official help and support Number for Routers. Links to Router customer support and technical solutions, set-up, help, and answers to top issues.

John Forester
Level 1
Level 1

Hi tstrode1,

Have you tried putting them in separate network object groups, and using a unique acl for each one? Can you paste in the portions  (acls, network object groups, and crypto map) that apply?

 

Thanks 

I've tried putting them in separate network object groups and using a separate acl for each one.  Still no traffic.

Review Cisco Networking for a $25 gift card