ā04-24-2012 02:59 AM - edited ā02-21-2020 06:01 PM
Hello Guys
I have recently installed ASA 5520 in network & with my primary configuration it is working fine. But I have littile problem with my remote access VPN.
After connected to vpn I can ping my each server by FQDN and get reply from my LAN private IPs but when I ping to mail server, I get reply from my mail server's public IP and I think that is why I could not use outlook to send/receive mail. A ping sample is below for your info.
C:\Users\mannan_m>ping server1.standard-group.com
Pinging server1.standard-group.com [192.168.112.3] with 32 bytes of data:
Reply from 192.168.112.3: bytes=32 time=120ms TTL=128
Reply from 192.168.112.3: bytes=32 time=66ms TTL=128
Request timed out.
Reply from 192.168.112.3: bytes=32 time=126ms TTL=128
Ping statistics for 192.168.112.3:
Packets: Sent = 4, Received = 3, Lost = 1 (25% loss),
Approximate round trip times in milli-seconds:
Minimum = 66ms, Maximum = 126ms, Average = 104ms
--------------------------------------------------------------------------
C:\Users\mannan_m>ping dbs.standard-group.com
Pinging dbs.standard-group.com [192.168.112.9] with 32 bytes of data:
Reply from 192.168.112.9: bytes=32 time=136ms TTL=64
Reply from 192.168.112.9: bytes=32 time=122ms TTL=64
Reply from 192.168.112.9: bytes=32 time=203ms TTL=64
Reply from 192.168.112.9: bytes=32 time=369ms TTL=64
Ping statistics for 192.168.112.9:
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 122ms, Maximum = 369ms, Average = 207ms
---------------------------------------------------------------------------
C:\Users\mannan_m>ping mail1.standard-group.com
Pinging mail1.standard-group.com [202.84.36.171] with 32 bytes of data:
Request timed out.
Request timed out.
Request timed out.
Request timed out.
Ping statistics for 202.84.36.171:
Packets: Sent = 4, Received = 0, Lost = 4 (100% loss),
Please note that I have setup my vpn with ASDM, your advise to resolve this issue is highly appreciated.
thanks.
Regards
Mannan
ā04-24-2012 04:39 AM
Hi Mannan,
I guess the mail server internal IP also in the sane range as other servers (192.168.112.x). Please post the ASA running config, if possible. The DNS server is resolving mail1 to public IP. Check if there is any host file entry in the PC/laptop for the mail server. If not, using the same DNS, try to resolve the mail1 from inside of your network. If this still resolves to public IP, then check the DNS server.
hth
MS
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide