Gre tunnel up/down through ASA
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-26-2013 07:24 AM
Router->ASA->router
I configured gre interface in both the router. I could ping gre destination ip from both the router. I could see traffic in my ASA firewall for both gre and Icmp. But my gre interface is still down.
I have ASA 5510 wit 8.4 IOS
Sent from Cisco Technical Support Android App
- Labels:
-
VPN
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-26-2013 09:42 AM
I added keep alive 10 3 in both gre config to ensure tunnel status and reachability
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-26-2013 12:36 PM
Hi,
Could you please run captures on both interfaces and verify that they are recieving all the packets sent to each other.?
Regards,
~Harry
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-27-2013 01:00 AM
Yes I could see GRE packet between two ip in in inside and outside interface of the firewall.
Still the link is up down and configured eigrp I couldn't see neighbour up
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-27-2013 07:39 AM
Hi
Could you please share the scrubbed config of your firewall ?
~Harry
Sent from Cisco Technical Support Android App
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-28-2013 02:26 AM
By default inside to outside permit. Nat is also not required.
No specific config in ASA
I configured below comments
Sysopt connection permit-vpn
Inspect pptp
Provided inbound access for gre and ip
Sent from Cisco Technical Support Android App
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-28-2013 11:25 AM
Hi harshit
My gre tunnel came up. :-)
All I did applied the below command and reset the tunnel config.
Default interface tunnel90
And I configured the tunnel again. It came up. I configured eigre between the tunnel. I could see the eigrp neighbour.
Thanks for your help
Sent from Cisco Technical Support Android App
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-28-2013 11:54 AM
Oh Cool!!
congrats.
Regards,
~Harry
*rate helpful posts*
