hi all,
We have a simple Site to Site VPN using ipsec between 2 units of Cisco ASA.
CIsco ASA 5585 (HQ) and CIsco ASA 5555(Remote Site)
On my remote site, i have multiple vlans. We are having user complains saying that a few of the user vlans tunnel across no longer works after running for awhile.
Eg VLAN 50, 51,55 works, and VLAN 52,60 does not work.
We have configured to pass all the said vlans as interesting traffic.
When we sent out engineers down. It seems like the workaround is to ping to any VLAN network across to HQ, and the tunnel will be up automatically.
What could be the cause of the problem?