09-30-2008 04:01 AM
Hi i am trying to implement a site to site VPN on a 1841 to a linux Debian.
I can get the VPN to work but no traffic is going into the tunnel. Please help i have attached a copy of the config.
Thanks.
10-06-2008 11:01 AM
Use the ping command to check the network or find whether the application server is reachable from your network. It can be a problem with the maximum segment size (MSS) for transient packets that traverse a router or PIX/ASA device, specifically TCP segments with the SYN bit set.
You are unable to initiate the VPN tunnel from ASA/PIX interface, and after the tunnel establishment, the remote end/VPN Client is unable to ping the inside interface of ASA/PIX on the VPN tunnel. For example, the pn client can be unable to initiate a SSH or HTTP connection to ASA's inside interface over VPN tunnel.
10-06-2008 01:35 PM
Hello Pankaj,
You need to bypass NAT for traffic flowing from your LAN to the remote LAN through the IPSEC Tunnel.
Please refer the below URL for details.
http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a0080093f73.shtml
Regards,
Arul
** Please rate all helpful posts **
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide