- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-23-2010 01:16 PM
Hi,
We have an ASA 5510 device which has be deployed for some time. Everything works great except local VPN clients cannot ping local VPN clients which get their ip address from the local pool. They can ping anywhere on the local corporate network but not each other. I'm sure there is a logical explantion for this due to an ACL but any advice appreciated....
Thanks in advance
Keith
Solved! Go to Solution.
- Labels:
-
VPN
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-23-2010 01:37 PM
Hi Keith,
I think that in order to allow a VPN client to reach another VPN client, the ASA should u-turn the VPN traffic (because it will be receiving traffic from a VPN tunnel and re-sending it again through another tunnel.
Can you add ''same-security-traffic permit intra-interface'' and try again?
Federico.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-23-2010 01:37 PM
Hi Keith,
I think that in order to allow a VPN client to reach another VPN client, the ASA should u-turn the VPN traffic (because it will be receiving traffic from a VPN tunnel and re-sending it again through another tunnel.
Can you add ''same-security-traffic permit intra-interface'' and try again?
Federico.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-24-2010 03:47 AM
Federico,
That worked perfectly. Many thanks for you help
Keith
