Solved

VPN: ASA to SonicWall

Posted on 2013-12-23
6
535 Views
Last Modified: 2014-01-06
Hey EE,

Having an issue with pinging internal LAN machines behind a Sonicwall firewall from a server behind the ASA.   I have a site to site Cisco ASA 5505 to a Sonicwall at the other end.   VPN is up and passing traffic, but on the server I can not ping the internal behind the Sonicwall.  I can ping the Sonicwall Gateway 192.168.1.1, but after that nothing on LAN side behind Sonicwall is pinging.  

ASA side:
Can ping Sonicwall gateway 192.168.1.1
But can not ping anything behind the Sonicwall.  

Any clue?
0
Comment
Question by:ilivegolive
  • 4
  • 2
6 Comments
 

Author Comment

by:ilivegolive
ID: 39736683
Inside the Sonicwall firewall I see VPN to LAN, and LAN to VPN access allowed.  The ASA is receiving and transmitting and on the firewall, VPN is active.
0
 
LVL 10

Expert Comment

by:convergint
ID: 39736714
So clients from the Sonicwall side can ping the server and other clients on the ASA side?
0
 

Author Comment

by:ilivegolive
ID: 39736726
Hey convergint, - forgot to mention that.  No client behind the Sonicwall can ping the server behind the ASA.  But.....the Sonicwall can ping the server.   So from the Sonicwall GUI interface tool, the server is pingable, but the LAN PCs are not able to.  The LAN PCs are plugged into a switch.  They get internet access just cant ping the server or the subnet the server lives on.
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 
LVL 10

Accepted Solution

by:
convergint earned 500 total points
ID: 39736733
It sounds like the NAT routing is not setup properly on the ASA.  The Sonicwalls will automatically add a route to the VPN connections but the ASA's do not.
0
 

Author Comment

by:ilivegolive
ID: 39738456
Hey convergint -

The current ACL is

access-list CUSTOMER extended permit ip 10.15.213.87 255.255.255.224 192.168.1.0 255.255.255.0

Traffic is being received and sent.  I was figuring it could be something up with the Sonicwall as the ASA can ping the Sonicwall and the Sonicwall can ping the ASA.

10.15.213.87 is where the server lives behind the ASA.  192.168.1.0 the LAN behind the Sonciwall with .1 being the gateway.
0
 

Author Comment

by:ilivegolive
ID: 39759429
This has been resolved.  Rebuilt the tunnel on the ASA.  Traffic is passing through to the LAN behind the Sonicwall now.  Not sure to sure what happened.  Before I rebuilt the tunnel, i saw traffic passing just fine.  But the interesting part is, the traffic that was passing was very small.  But after I rebuilt the tunnel, the traffic received and sent was very large.  Thanks convergint, i feel it could have been something goofed with the Access List / NAT
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Sonicwall Web User login Redirect 9 60
LaserJet 4250 5 50
How can we stop ransomware files from executing if it is downloaded?! 7 131
Read-only SNMP string example ? 7 89
We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
This tutorial gives a high-level tour of the interface of Marketo (a marketing automation tool to help businesses track and engage prospective customers and drive them to purchase). You will see the main areas including Marketing Activities, Design …
Although Jacob Bernoulli (1654-1705) has been credited as the creator of "Binomial Distribution Table", Gottfried Leibniz (1646-1716) did his dissertation on the subject in 1666; Leibniz you may recall is the co-inventor of "Calculus" and beat Isaac…

815 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now