This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

[asl 6.313]

Hi!

We have established a site to site VPN between our ASL 6.3 and a Cisco ASA 5505.
Like this:

LAN1 - ASL - internet - Cisco ASA - LAN2


The VPN is established ok but we can only get traffic (ping) to flow from LAN2 to LAN1.
From LAN1 to LAN2 we get timeouts. 

BUT, occationally the pings get through from LAN1 to LAN2, and when that happens the ping from LAN2 to LAN1 stops to work

Packetfilters on both sides are configured to allow traffic in both directions. 
The only thing that seems strange is that the route for LAN2 in the ASL doesn't show up when runing the route-command from shell.

Has anyone encountered the same problem?


This thread was automatically locked due to age.
  • If this was working before, have you tried changing the Ethernet cable?

    In the 'Remote Gateway' definition for the LAN2 site, can you confirm that LAN2 is in the 'Remote networks' box?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Haven't changed the ethernet-cable.

    Yes, the tunnel is correctly defined

    Sorry for the extremely bad subject-line.