[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

site-to-site vpn management

Posted on 2013-12-03
1
Medium Priority
?
329 Views
Last Modified: 2013-12-03
I currently have a site-to-site vpn configured with our main office and a remote office.  Behind the main office is a syslog/snmp server.  the remote office asa only has two interface, "outside" and "inside" inteface.  

The main office (internal subnet) can ssh to the remote office's "outside" interface.  With this connectivity, i can use cat tools to back up the config,  

Here's where my issue lies.  I CANNOT ssh nor ping the "inside" interface of the remote office's ASA from the main office's internal subnet.
I would like to send syslog/snmp-traps from the remote ASA to the syslog/snmp server located behind the main office using the inside interface of this remote ASA.  There are no ACL denies, NAT issues that is obvious from the ASA monitor.  Note that it's the same thing that's happening from remote office's to the main office's inside interface; i cannot ping it nor ssh to it.  

Anyone seen this kind of issue with a site-to-site VPN established using two ASA's?
I will attach some configs for better understanding.

Thanks
0
Comment
Question by:FREDARCE
1 Comment
 
LVL 2

Accepted Solution

by:
showard2007 earned 1000 total points
ID: 39694019
Try the command "management-access inside". Then make sure your ssh statements allow for the main office's internal subnet to the inside interface of the device.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Network traffic routing plays key role in your network, if you have single site with heavy browsing or multiple sites, replicating important application data from your Primary Default Gateway ,you have to route your other network traffic from your p…
Arrow Electronics was searching for a KVM  (Keyboard/Video/Mouse) switch that could display on one single monitor the current status of all units being tested on the rack.
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an anti-spam), the admin…
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…
Suggested Courses
Course of the Month19 days, 12 hours left to enroll

873 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question