cisco pix internally initiated traffic does not go through vpn

we have a cisco pix 515E with a vpn to a vendor. there are 15 devices that need to traverse the vpn, all are on the same network. The problem is, all are fine except one. The only difference is, the one device that does not want to traverse the vpn is initiating traffic to the remote site, and the others receive traffic.

the pix is denying the traffic for some reason and not sending it through the tunnel. Is there some statement i need to put in to allow for this?

The internal address are not nat'ed locally, they are natted at the remote site, hence the nonat access list. Once again, all work fine except for the one initiating traffic locally. We are on IOS version 6.3(4)
access-list vpntraffic line 15 permit ip host 10.0.200.42 10.10.20.0 255.255.255.0
access-list nonat_dmz1 line 20 permit ip host 10.0.200.42 10.10.20.0 255.255.255.0

Open in new window

dktt18Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

dktt18Author Commented:
Figured it out. It was the remote site incorrectly configured access-list. Those guys, kept saying it was us. Grrr!
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Cisco

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.