cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
888
Views
0
Helpful
1
Replies

Cisco ASA 5520 Remote Access VPN

mannan.mou
Level 1
Level 1

Hello Guys

I have recently installed ASA 5520 in network & with my primary configuration it  is working fine. But I have littile problem with my remote access VPN.

After connected to vpn I can ping  my each server by FQDN and get reply from my LAN private IPs but when I ping to mail server, I get reply from my mail server's public IP and I think that is why I could not use outlook to send/receive mail.  A ping sample is below for your info.

C:\Users\mannan_m>ping server1.standard-group.com

Pinging server1.standard-group.com [192.168.112.3] with 32 bytes of data:
Reply from 192.168.112.3: bytes=32 time=120ms TTL=128
Reply from 192.168.112.3: bytes=32 time=66ms TTL=128
Request timed out.
Reply from 192.168.112.3: bytes=32 time=126ms TTL=128

Ping statistics for 192.168.112.3:
    Packets: Sent = 4, Received = 3, Lost = 1 (25% loss),
Approximate round trip times in milli-seconds:
    Minimum = 66ms, Maximum = 126ms, Average = 104ms

--------------------------------------------------------------------------

C:\Users\mannan_m>ping dbs.standard-group.com

Pinging dbs.standard-group.com [192.168.112.9] with 32 bytes of data:
Reply from 192.168.112.9: bytes=32 time=136ms TTL=64
Reply from 192.168.112.9: bytes=32 time=122ms TTL=64
Reply from 192.168.112.9: bytes=32 time=203ms TTL=64
Reply from 192.168.112.9: bytes=32 time=369ms TTL=64

Ping statistics for 192.168.112.9:
    Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 122ms, Maximum = 369ms, Average = 207ms


---------------------------------------------------------------------------

C:\Users\mannan_m>ping mail1.standard-group.com

Pinging mail1.standard-group.com [202.84.36.171] with 32 bytes of data:
Request timed out.
Request timed out.
Request timed out.
Request timed out.

Ping statistics for 202.84.36.171:
    Packets: Sent = 4, Received = 0, Lost = 4 (100% loss),

Please note that I have setup my vpn with ASDM, your advise to resolve this issue is highly appreciated.

thanks.

Regards

Mannan

1 Reply 1

mvsheik123
Level 7
Level 7

Hi Mannan,

I guess the mail server internal IP also in the sane range as other servers (192.168.112.x). Please post the ASA running config, if possible. The DNS server is resolving mail1 to public IP. Check if there is any host file entry in the PC/laptop for the mail server. If not, using the same DNS, try to resolve the mail1 from inside of your network. If this still resolves to public IP, then check the DNS server.

hth

MS