cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
274
Views
0
Helpful
2
Replies

VPN Site-To-Site seem unidirectional

cristiano.gorla
Level 1
Level 1

Hello,

I configured a vpn site to site with an ASA5510 at the HQ and a router 1921 at the remote site. The tunnel is up but i cannot ping from HQ to remote site.

I did some test and i saw that I can ping the pc X in the remote site from the pc Y in the HQ just if I ping at the same time the pc Y from the pc X. 

The ping from pc Y to the PC X always works.

 

Have you any idea about the cause?

Tell me if you need other informations.

 

 

Thanks

Cristiano

 

PS: Sorry for my english

2 Replies 2

Hi Cristiano,

 If i understand your issue correctly , you can ping to host in HO from your remote site , but you cant ping to a host at remote site from your HO ??

 

If this is your case , enable inspect ICMP on your ASA device .

 

HTH

Sandy

Hi Sandy,

I did other tests, the problem disappear when i disable the firewall on the 1921 at remote ste.

I think i've to debug the firewall rules.

 

Thanks for your reply.

 

Cristiano