cancelar
Mostrando los resultados de 
Buscar en lugar de 
Quiere decir: 
cancel
593
Visitas
0
ÚTIL
1
Respuestas

Unable to ping SSL vpn users

newtwork1
Level 1
Level 1

I've setup several ASA's with Anyconnect based SSL VPNs, but I've never been able to ping an IP address that has been assigned to the remoted in user. Should I be able to ping the remoted in user? Do I need to configure anything in group policy or user attributes to enable this?

Newt

  • VPN
1 SOLUCIÓN ACEPTADA

Soluciones aceptadas

Gustavo Medina
Cisco Employee
Cisco Employee

Newt,

Absolutely, you will be able to ping the RA client when he/she connects, if the client is able to ping your internal resources but the connection does not work the other way then most likely the firewall of the RA client is blocking those packets. Most of the software firewalls including the Windows Firewall drop unsolicited incoming traffic that does not correspond to  either traffic sent in response to a request of the computer (solicited  traffic) or unsolicited traffic that has been specified as allowed  (excepted traffic).

Regards.

Ver la solución en mensaje original publicado

1 RESPUESTA 1

Gustavo Medina
Cisco Employee
Cisco Employee

Newt,

Absolutely, you will be able to ping the RA client when he/she connects, if the client is able to ping your internal resources but the connection does not work the other way then most likely the firewall of the RA client is blocking those packets. Most of the software firewalls including the Windows Firewall drop unsolicited incoming traffic that does not correspond to  either traffic sent in response to a request of the computer (solicited  traffic) or unsolicited traffic that has been specified as allowed  (excepted traffic).

Regards.