bigz71
asked on
Site to Site VPN - cannot ping
All,
I created a vpn tunnel between my office (Cisco ASA 5520) and home (SonicWall TZ 170 StandardOS)using 3DES MD5, Aggressive Mode and PFS. My home network is using 192.168.90.0/24 and is connected to the OPT port of the Sonicwall. My office LAN is 10.60.0.0/16 and 10.50.0.0/16. The VPN tunnel is established however I cannot ping across and all my settings look correct. Any ideas?
I created a vpn tunnel between my office (Cisco ASA 5520) and home (SonicWall TZ 170 StandardOS)using 3DES MD5, Aggressive Mode and PFS. My home network is using 192.168.90.0/24 and is connected to the OPT port of the Sonicwall. My office LAN is 10.60.0.0/16 and 10.50.0.0/16. The VPN tunnel is established however I cannot ping across and all my settings look correct. Any ideas?
Umm, he is doing site-to-site, not RAS VPN.
Can you post debug output of the following on the ASA:
deb cry is sa
deb cry ip sa
Without that, it is nearly impossible to say what the issue is.
kr
Can you post debug output of the following on the ASA:
deb cry is sa
deb cry ip sa
Without that, it is nearly impossible to say what the issue is.
kr
ASKER
CCIE8122,
I'm still new with Cisco and not exactly sure how to use the debug commands. I ran the commands you asked and get an error the command is not found.
fw# debug cry is sa
^
ERROR: % Invalid input detected at '^' marker.
fw#
I'm still new with Cisco and not exactly sure how to use the debug commands. I ran the commands you asked and get an error the command is not found.
fw# debug cry is sa
^
ERROR: % Invalid input detected at '^' marker.
fw#
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
I was able to fix the problem by recreating the VPN tunnel. Thanks for your help and points will be awarded to you.
I guess you connect from home to your office.
How do you connect ? Do you use the Cisco VPN client ? When you are connected, can you check your IPs to see if you get a new one from your vpn ?