I have a site to site vpn between an ASA 5505 (remote site) and PIX 515 (corporate headquarters) using the easy vpn feature. When the tunnel is up I'm able to access all the resources at corporate from behind the ASA, but I'm unable to ping anything. Also from corporate I'm unable to ping the inside interface of the ASA. On the ASA I have the easy vpn configuration completed. Below is the config of the PIX at my corporate office that pertains to the vpn tunnel to the ASA.
access-list nonat-vpn extended permit ip 10.1.0.0 255.255.0.0 10.30.1.0 255.255.255.0
access-list nonat-vpn extended permit ip 10.30.1.0 255.255.255.0 10.1.0.0 255.255.0.0
access-list ezvpn1 extended permit ip 10.1.0.0 255.255.0.0 10.30.1.0 255.255.255.0
access-list ezvpn1 extended permit ip 10.30.1.0 255.255.255.0 10.1.0.0 255.255.0.0
global (outside) 1 interface
nat (inside) 0 access-list nonat-vpn
nat (inside) 1 0.0.0.0 0.0.0.0
group-policy ASA internal
group-policy ASA attributes
split-tunnel-network-list value ezvpn1
tunnel-group ASAtest type ipsec-ra
tunnel-group ASAtest general-attributes
tunnel-group ASAtest ipsec-attributes
What I'm trying to accomplish is to be able to ping the ASA's inside interface and hosts behind the ASA from the corporate office. Likewise I would also like to be able to ping from behind the ASA to hosts on my corporate office network.