Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM Site to Site to Cisco ASA

Hi,

I am doing a ipsec site to site vpn on SOphos UTM with Cisco ASA, i did able to established the VPN tunnel. however, i cant ping Cisco ASA local ip. technically i cant ping the the network subnet at Cisco's end. I have the remote and local subnets setup. anything i am missing on the config?

Appreciate any advise. Thanks!


This thread was automatically locked due to age.
  • Yes. [:D]

    Cheers - Bob
    PS Please click on [Go Advanced] below and attach a picture of the 'Site-to-site VPN tunnel status' with the list expanded.  Also, show a line from the Firewall log file where a ping was dropped.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Have you enabled ping forwarding on the UTM?
    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
  • Hi,

    I am doing a ipsec site to site vpn on SOphos UTM with Cisco ASA, i did able to established the VPN tunnel. however, i cant ping Cisco ASA local ip. technically i cant ping the the network subnet at Cisco's end. I have the remote and local subnets setup. anything i am missing on the config?

    Appreciate any advise. Thanks!


    This is an issue on ASA side. You may need to enable "Enable lookup route table to locate egress interface." under the ASA NAT rules.