Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
As the title says, I have a VPN ikev2 tunnel from a Fortigate to a Cisco ASA, but the snmp/ping anything doesnt work on the inside. Also I saw in Forti logging that the traffic is going over tunnel, but on the ASA I don't see any packets on sh cry ip...
Bump. Any ideas ? I did a packet tracer from an inside IP (lets say .3) to a destination over VPN and looks just fine. Did the same from the IP of the inside interface and it doesn't seem to be placed over VPN. I rechecked access lists and they look ...
I have attached the ASA file, I hope that's OK. Will also paste a bit more commands output here:show crypto ikev2 saIKEv2 SAs:Session-id:1, Status:UP-ACTIVE, IKE count:1, CHILD count:2Tunnel-id Local Remote Status Role160520829 1.1.1.1/500 2.2.2.2/50...
Same issue, no Identity NAT (due to network overlap) so I cant route-lookup. All the IPs in the LAN behind inside works, just the IP of the interface doesn't. Any idea?