cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
243
Views
0
Helpful
1
Replies

connctivity issues in a PIX to PIX VPN

ravik77
Level 1
Level 1

Hi All

I have setup a site to site VPN using PIX firewalls at both ends.The connectivity works fine when interesting traffic is generated from my network to the remote network and we see hits in the access-list on both PIXs. However when my counterpart at the remote network tries to generate interesting traffic matching the access-list on his end the connectivity does not work. He sees the access-list counters go up on his PIX, but I do not see any increase in the access-list counters on my PIX. The debug output on his PIX is giving a message SA retransmit when he generates interesting traffic from his network. We have checked that the access-list matches on both ends. The preshare key is correct as I am able to connect from my hosts to hosts on his network. Is there anything else that I should be checking..

Can someone shed some light as to where things might be going wrong.

Thanks in advance

Ravi

1 Reply 1

nihal.akbulut
Level 1
Level 1

Does he also see the encaps packet counter increasing on his PIX or not? (with "show crypto ipsec sa" command)