Create Test DMZ and vlan

We have a 6509 at our core and an ASA 5520 as our edge firewall.  I am trying to test something and created a new zone in the firewall, with an IP address of 172.19.1.1/24 .  I put a box conneted to a 4500 switch with an IP of 172.19.1.2/24.  I also created a new Vlan(65) and assigned it to the port that the .2 box is connected to, so it looks like this

Prod1--172.19.1.2
 |
Core1
 |
ASA5520--172.19.1.1

the new zone has a security level of 90.  the vlan propogated to both switches okay, but I can not ping the .1 address from the .2 box.  Do I need a route somewhere, we already us eigrp on the network.
jiggin23Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

H_HarryCommented:
Have you allowed ICMP through the ASA via an ACL?
 
You could try debuging ICMP from the firewall and see if it is reaching the ASA or not.
 
#debug icmp trace
 
 
0
jiggin23Author Commented:
yes i have allowed icmp through the firewall from the new zone, i have an ip any to any and icmp any to any rule on that interface
0
H_HarryCommented:
If you debug it can you see the traffic - this will tell you if the problem is with the ASA or before / after it.
0
kdearingCommented:
Is that new VLAN connected by a separate link?
If not, you'll need to trunk the connection between the 6509 and the ASA.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
jiggin23Author Commented:
Forgot to trunk the new vlan to the core, thanks.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Hardware Firewalls

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.