Link to home
Start Free TrialLog in
Avatar of dmwynne
dmwynneFlag for United States of America

asked on

Lost connect to external network after creating site to site vpn

I have several machines hosted at an external data center.  I had access to them.  I thn created a site to site vpn to the site and can no longer ping them.  even when I take the site to site vpn out of the asa I cannot get to them.  The asa can still ping the hosts but anything behind the asa cannot.
ASKER CERTIFIED SOLUTION
Avatar of John Meggers
John Meggers
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of dmwynne

ASKER

I was getting to the machines via the internet, they all have external ips and I had specific ports open.  I did change the config on the other end.  Currently the site to site is up but I can't get to those external ips at all.

Avatar of Les Moore
How did you set up the nat0 access-list for the VPN?
Can you paste your relevant config?
Avatar of dmwynne

ASKER

This was a routing issue on the remote side.  Needed to add routes on the remote firewall to the internal networks.
Avatar of dmwynne

ASKER

routing issue on the Juniper end.