cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
986
Views
0
Helpful
1
Replies

L-2-L VPN

mohammedrafiq
Level 1
Level 1

             Hi,

I am trying to set up VPN (see attached diagram) between ASA5510 in India and Forti firewall in HongKong (3rd party ) which will route then our subnet 192.168.1.x/24 over MPLS to London.But my tunnel is not comminng up.phase one is in wating state.

The odd thing is in my ACL i have source as 192.168.1.0/24 and destination as 172.16.1.0/24 ( which is in London).

My question is ,

1- Is this possible to set up LAN-to LAN vpn between ASA in India with src 192.168.1.0/24 and between Forti FW in HongKong but destination in London 172.16.1.0/24

or

Do I need to set L-2-L vpn between India LAN and HK LAN ?

Regards,

1 Reply 1

pkupisie
Cisco Employee
Cisco Employee

Hi,

You can set-up a tunnel from ASA5510 to Forti FW without any problems, you just need to have a proper routing on both ends.

There should be routing in London pointing toward India through Forti FW.

Provide more outputs (show crypto ipsec sa, show crypto isakmp sa, debug crypto ipsec, debug crypto isakmp) from both ends for tunnel tshoot.