?
Solved

Network drive connection issues with ASA 5505

Posted on 2013-12-02
4
Medium Priority
?
225 Views
Last Modified: 2014-01-22
I have a 5510 at the main site, and a 5505 running 8.2(5) at the remote site. I have an issue where it looses connection to all of the internal servers at the main site, and the only way to get it working again is to do a ipconfig /renew on the machine. It happens to all of the machines on that site, just at random times. There are times where computers boot up and the login script does not run. How do I fix this?
0
Comment
Question by:j_crow1
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 57

Expert Comment

by:Pete Long
ID: 39689971
I assume you have a site to Site VPN?

Also Does the rmeote site have an ACL applied to outbound traffic?

post the resules of

show run access-group from the 5505 and the 5510

PL
0
 

Author Comment

by:j_crow1
ID: 39689981
From 5505:
access-group inside_access_in in interface inside
access-group outside_access_in in interface outside


From 5510:
access-group 100 in interface outside
access-group acl_out in interface inside
0
 

Author Comment

by:j_crow1
ID: 39689985
If it helps, when trying to VNC into those computers I have to actually ping the machine name before it will connect through VNC; if i dont, it will not connect via VNC. And yes, it is a IPSEC tunnel.
0
 
LVL 57

Accepted Solution

by:
Pete Long earned 2000 total points
ID: 39690013
OK SO you are filtering all outbound traffic at both sites

On the 5505 add the following

access-list  inside_access_in line 1 permit ip {network address of the site behind the 5505} {subnet of the network behind the 5505} {network address of the site behind the 5510} {subnet of the network behind the 5510}

On the 5510 add the following

access-list  acl_out line 1 permit ip {network address of the site behind the 5510} {subnet of the network behind the 5510} {network address of the site behind the 5505} {subnet of the network behind the 5505}

Then try again
0

Featured Post

New benefit for Premium Members - Upgrade now!

Ready to get started with anonymous questions today? It's easy! Learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you have an ASA5510 then this sort of thing would be better handled with a CSC Module, however on an ASA5505 thats not an option, and if you want to throw in a quick solution to stop your staff going to facebook during work time, then this is the…
There’s a movement in Information Technology (IT), and while it’s hard to define, it is gaining momentum. Some call it “stream-lined IT;” others call it “thin-model IT.”
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Suggested Courses

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question