cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
511
Views
0
Helpful
2
Replies

Site to Site VPN 1841 to Linux

pankajjankee
Level 1
Level 1

Hi i am trying to implement a site to site VPN on a 1841 to a linux Debian.

I can get the VPN to work but no traffic is going into the tunnel. Please help i have attached a copy of the config.

Thanks.

2 Replies 2

mchin345
Level 6
Level 6

Use the ping command to check the network or find whether the application server is reachable from your network. It can be a problem with the maximum segment size (MSS) for transient packets that traverse a router or PIX/ASA device, specifically TCP segments with the SYN bit set.

You are unable to initiate the VPN tunnel from ASA/PIX interface, and after the tunnel establishment, the remote end/VPN Client is unable to ping the inside interface of ASA/PIX on the VPN tunnel. For example, the pn client can be unable to initiate a SSH or HTTP connection to ASA's inside interface over VPN tunnel.

ajagadee
Cisco Employee
Cisco Employee

Hello Pankaj,

You need to bypass NAT for traffic flowing from your LAN to the remote LAN through the IPSEC Tunnel.

Please refer the below URL for details.

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080093f73.shtml

Regards,

Arul

** Please rate all helpful posts **