04-29-2016 01:01 PM - edited 02-21-2020 08:47 PM
Hello guys
04-29-2016 07:23 PM
Hi,
It seems the config is in place.
Could you also check routing for this remote subnet 172.17.230.0 255.255.255.0 ?
And can you check your crypto ACL on the remote peer ?
Is it matching the ACL on ASA ?
What does the packet tracer output show for this traffic ?
Regards,
Aditya
Please rate helpful posts.
04-30-2016 10:13 AM
05-01-2016 06:58 AM
Does anyone have an idea of what has to be done? Because the ASA configuration is correct.
05-01-2016 07:52 PM
Hi,
Please use
Try making the CELG interface as the management-access interface.
management-access
Try pinging the remote IP using the source as CELG:
ping
And if you can also try pinging the
Regards,
Aditya
Please rate helpful posts.
05-02-2016 11:59 AM
Hi, Aditya.
I am unable to capture the traffic from the remote site VPN:
Fw-ASA#show capture
capture VPN type isakmp ikev1 packet-length 32810 interface outside circular-buffer [Capturing - 0 bytes]
match ip host 172.17.230.53 any
This was the setting of catch what I did:
Fw-ASA(config)#capture VPN TYpe isakmp ikev1 interface outside circular-buffer match ip host 172.17.230.53 any
Where am I going wrong?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide