Solved

Lost connect to external network after creating site to site vpn

Posted on 2011-03-21
5
341 Views
Last Modified: 2012-05-11
I have several machines hosted at an external data center.  I had access to them.  I thn created a site to site vpn to the site and can no longer ping them.  even when I take the site to site vpn out of the asa I cannot get to them.  The asa can still ping the hosts but anything behind the asa cannot.
0
Comment
Question by:dmwynne
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
5 Comments
 
LVL 18

Accepted Solution

by:
jmeggers earned 500 total points
ID: 35184558
Is the ASA advertising a route to the inside to get to the servers at the other end?  How were you getting to the servers prior to the VPN tunnel?  Did you change the configuration on the other end and is it possible it's still trying to encrypt the traffic?
0
 
LVL 14

Author Comment

by:dmwynne
ID: 35184605
I was getting to the machines via the internet, they all have external ips and I had specific ports open.  I did change the config on the other end.  Currently the site to site is up but I can't get to those external ips at all.

0
 
LVL 79

Expert Comment

by:lrmoore
ID: 35184909
How did you set up the nat0 access-list for the VPN?
Can you paste your relevant config?
0
 
LVL 14

Author Comment

by:dmwynne
ID: 35193348
This was a routing issue on the remote side.  Needed to add routes on the remote firewall to the internal networks.
0
 
LVL 14

Author Closing Comment

by:dmwynne
ID: 35193356
routing issue on the Juniper end.
0

Featured Post

Why Off-Site Backups Are The Only Way To Go

You are probably backing up your data—but how and where? Ransomware is on the rise and there are variants that specifically target backups. Read on to discover why off-site is the way to go.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
For many of us, the  holiday season kindles the natural urge to give back to our friends, family members and communities. While it's easy for friends to notice the impact of such deeds, understanding the contributions of businesses and enterprises i…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question