cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
550
Views
0
Helpful
1
Replies

The tunnel is UP but cannot ping from end to end

kevinshkong11
Level 1
Level 1

Hi ALL,

 

The VPN tunnel is UP and established but still cannot ping from end to end. When using packet tracer in ASDM, it said blocked by ACL. ACL is opened ANY to ANY.

 

Attached are 2 sites configuration

 

Kindly advise

Kevin

1 Reply 1

Hi,

 

On the JR ASA add the command inspect icmp under the global policy, E.g:

 

policy-map global_policy
 class inspection_default

 inspect icmp

 

This is already enabled on the other ASA. If that doesn't work can you upload the output of the packet trace.