Link to home
Start Free TrialLog in
Avatar of mstefani
mstefaniFlag for United States of America

asked on

Pix 501 remote VPN connects but no outbound traffic

I have a pix 501 6.3(5) that I want to do a remote vpn connection on for laptops out in the field.  I do a lot of 501's and this remote vpn and from time to time when I set up the remote VPN using local users, I can connect to the VPN but cannot access anything inside the network.  On the laptop, I double click on the 2 pcs in the lower right of the start bar and look at the connection status.  It shows I am connected on the laptop but the byte count for outbound don't move past 219 bytes.  The PIX shows that the laptop is connected in the monitoring section of the web interface (PDM).

If I reload the vpn setup and users, sometimes that fixes it and sometimes not.  It is really hit or miss.  I use PPTP and windows XP vpn client to keep things simple for my users.  I've compared the settings from a working PIX to this one and I can't see anything that is different.

Has anyone else had this trouble, where the byte count doesn't go past 220bytes?

thanks
Avatar of bignewf
bignewf
Flag of United States of America image

I have seen this issue before. 6.3 IOS is a very buggy version, although 6.3.5 did remove some vpn connectivity bugs. Have your tried removing and re-applying nat exempt and interesting traffic access lists? (these allow the traffic inside your network)

You might consider upgrading the IOS also
are the nat0 and above interesting traffic lists hitcounts increasing or being accessed at all?
do a
sh access-list  (clear the hitcounts first)
ASKER CERTIFIED SOLUTION
Avatar of mstefani
mstefani
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial