[2 days left] What’s wrong with your cloud strategy? Learn why multicloud solutions matter with Nimble Storage.Register Now

x
?
Solved

Network drive connection issues with ASA 5505

Posted on 2013-12-02
4
Medium Priority
?
226 Views
Last Modified: 2014-01-22
I have a 5510 at the main site, and a 5505 running 8.2(5) at the remote site. I have an issue where it looses connection to all of the internal servers at the main site, and the only way to get it working again is to do a ipconfig /renew on the machine. It happens to all of the machines on that site, just at random times. There are times where computers boot up and the login script does not run. How do I fix this?
0
Comment
Question by:j_crow1
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 57

Expert Comment

by:Pete Long
ID: 39689971
I assume you have a site to Site VPN?

Also Does the rmeote site have an ACL applied to outbound traffic?

post the resules of

show run access-group from the 5505 and the 5510

PL
0
 

Author Comment

by:j_crow1
ID: 39689981
From 5505:
access-group inside_access_in in interface inside
access-group outside_access_in in interface outside


From 5510:
access-group 100 in interface outside
access-group acl_out in interface inside
0
 

Author Comment

by:j_crow1
ID: 39689985
If it helps, when trying to VNC into those computers I have to actually ping the machine name before it will connect through VNC; if i dont, it will not connect via VNC. And yes, it is a IPSEC tunnel.
0
 
LVL 57

Accepted Solution

by:
Pete Long earned 2000 total points
ID: 39690013
OK SO you are filtering all outbound traffic at both sites

On the 5505 add the following

access-list  inside_access_in line 1 permit ip {network address of the site behind the 5505} {subnet of the network behind the 5505} {network address of the site behind the 5510} {subnet of the network behind the 5510}

On the 5510 add the following

access-list  acl_out line 1 permit ip {network address of the site behind the 5510} {subnet of the network behind the 5510} {network address of the site behind the 5505} {subnet of the network behind the 5505}

Then try again
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

There’s a movement in Information Technology (IT), and while it’s hard to define, it is gaining momentum. Some call it “stream-lined IT;” others call it “thin-model IT.”
Considering cloud tradeoffs and determining the right mix for your organization.
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

656 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question