Solved

Cisco Site to Site VPN only connecting one way?

Posted on 2014-10-29
3
348 Views
Last Modified: 2014-10-30
Good Morning Experts,

I have a problem and I am hoping you can help me.  I am not a cisco person but am getting through and figured out a lot so far, but I am stuck.

We set up a Site to Site VPN through Cisco Asdm to what will be our cloud site.  From our internal network, I can ping the private ip address to our server which is on the cloud.  From the cloud server I cannot ping anything back on our internal network.  I feel like something is still blocked?

Have we done everything on our end to make this work?

I am not sure what else I am missing or where to look.  Any advice is appreciated.

We are on version 7.1.

Thank you,

Karen
0
Comment
Question by:klsphotos
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 29

Accepted Solution

by:
Predrag Jovic earned 500 total points
ID: 40410883
I can ping the private ip address to our server which is on the cloud
Since ping can go to remote server and back I can assume that tunnel, route and encryption are OK. If any of those are not OK you wouldn't be able to ping private address.
I feel like something is still blocked?
My guess is that you block access on your side. Check your ACL.
Also do traceroute to cloud server to be sure that path is OK (that it is not address from some other part of your network). :)
0
 

Expert Comment

by:dhuff2012
ID: 40410919
This sounds like an access-list issue to me. Can you post your access-list?
0
 

Author Comment

by:klsphotos
ID: 40414132
Thank you everyone it was in the ACL list.  I am able to connect and added the system to the domain successfully :)  I am having a issue promoting the server to domain controller but I will post that in another thread.

Thank you so much.
0

Featured Post

Online Training Solution

Drastically shorten your training time with WalkMe's advanced online training solution that Guides your trainees to action. Forget about retraining and skyrocket knowledge retention rates.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

732 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question