troubleshooting Question

ASA 5505 to ASA 5510 only passing one way traffic

Avatar of corpdsinc
corpdsinc asked on
RoutersInternet Protocol SecurityCisco
7 Comments1 Solution1151 ViewsLast Modified:
We have a cisco asa 5510 that we were able to configure lan to lan vpn tunnels to outside ASA 5505's.  However we can't ping across to the remote LANs.  Also, the status in ASDM shows traffic only RX not TX (see attached pic)

Any ideas?>

PMCTMPASA01# sh crypto isakmp sa

   Active SA: 2
    Rekey SA: 0 (A tunnel will report 1 Active and 1 Rekey SA during rekey)
Total IKE SA: 2

1   IKE Peer:
    Type    : L2L             Role    : initiator
    Rekey   : no              State   : MM_ACTIVE
2   IKE Peer:
    Type    : L2L             Role    : initiator
    Rekey   : no              State   : MM_ACTIVE asa5510 asa5510

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 7 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 7 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros