Solved

Lost connect to external network after creating site to site vpn

Posted on 2011-03-21
5
338 Views
Last Modified: 2012-05-11
I have several machines hosted at an external data center.  I had access to them.  I thn created a site to site vpn to the site and can no longer ping them.  even when I take the site to site vpn out of the asa I cannot get to them.  The asa can still ping the hosts but anything behind the asa cannot.
0
Comment
Question by:dmwynne
  • 3
5 Comments
 
LVL 18

Accepted Solution

by:
jmeggers earned 500 total points
ID: 35184558
Is the ASA advertising a route to the inside to get to the servers at the other end?  How were you getting to the servers prior to the VPN tunnel?  Did you change the configuration on the other end and is it possible it's still trying to encrypt the traffic?
0
 
LVL 14

Author Comment

by:dmwynne
ID: 35184605
I was getting to the machines via the internet, they all have external ips and I had specific ports open.  I did change the config on the other end.  Currently the site to site is up but I can't get to those external ips at all.

0
 
LVL 79

Expert Comment

by:lrmoore
ID: 35184909
How did you set up the nat0 access-list for the VPN?
Can you paste your relevant config?
0
 
LVL 14

Author Comment

by:dmwynne
ID: 35193348
This was a routing issue on the remote side.  Needed to add routes on the remote firewall to the internal networks.
0
 
LVL 14

Author Closing Comment

by:dmwynne
ID: 35193356
routing issue on the Juniper end.
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When you try to share a printer , you may receive one of the following error messages. Error message when you use the Add Printer Wizard to share a printer: Windows could not share your printer. Operation could not be completed (Error 0x000006…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

932 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now