Solved

VPN site to site using  2 ASA5505

Posted on 2011-03-09
4
391 Views
Last Modified: 2012-05-11
Hello All,
I'm tring to setup a VPN site to site using  2 ASA5505, Please help, here's the config from site A in the attached txt document. Site B is not setup at all as of now. I just want to make sure I have this setup site A setup OK. current-run-config-westbloomfiel.txt
0
Comment
Question by:mdallen8960
  • 2
4 Comments
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 500 total points
ID: 35093423
Looking good to me.

Just remember when setting up the other side, the access lists you use to 'select' the traffic must be an exact match but the other way around.....

Like
access-list 102 extended permit ip 192.168.0.0 255.255.255.0 192.168.5.0 255.255.255.0
should be
access-list 102 extended permit ip 192.168.5.0 255.255.255.0 192.168.0.0 255.255.255.0
at the other end.
If there are more lines, match them all. This will prevent weird issues to happen.
The same goes for the relevant part of the net exempt (nat0 part) of course.
0
 
LVL 16

Expert Comment

by:memo_tnt
ID: 35094954
Hi

you can review the following sample and use the same configuration:

http://www.ciscoblog.com/archives/2009/05/base_config_asa.html


Regards
0
 

Author Closing Comment

by:mdallen8960
ID: 35107876
Thanks alot.....
0
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 35107887
Glad I could help & thx for the points :)
0

Featured Post

What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Sonicwall SSO 11 40
Connection timeouts with mobile vpn users 5 36
VMware ESXi 5.5 - Remote Latency via VPN 2 36
Windows 10 VPN? 6 44
Optimal Xbox 360 connectivity requires "OPEN NAT". If you use Juniper Netscreen or SSG firewall products in a home setting, the following steps will allow you get rid of the dreaded warning screen below and achieve the best online gaming environment…
Overview Often, we set up VPN appliances where the connected clients are on a separate subnet and the company will have alternate internet connections and do not use this particular device as the gateway for certain servers or clients. In this case…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

25 Experts available now in Live!

Get 1:1 Help Now