Site-To-Site VPN does not work for one specific subnetI have a site to site VPN tunnel set up between offices, when I connect from home to either I cannot see the other sideSonicwall VPN only working for one remote subnetSite-to-Site IPSec VPN: bridged onlySplit tunnelling for Site to Site VPN on Cisco ASACisco ASA 5520 configuration on two SITE, A and BCisco ASA 5500 - SIP ports other than 5060Routing Help Needed - Site to Site VPNPlan for software site-to-site VPN in AWS VPCCisco ASA 5505 IPSEC VPN Connecting but not routing trafficCisco ASA 5505 can't talk to anything on Site-to-Site VPN

Definition of 'vrit'

Bash function: Execute $@ command with each argument in sequence executed separately

How to sort human readable size

What kind of chart is this?

How did the European Union reach the figure of 3% as a maximum allowed deficit?

In a Fish that is not a Fish

Explicit song lyrics checker

You may find me... puzzling

How to ask if I can mow my neighbor's lawn

How to make all magic-casting innate, but still rare?

Can a character with the Polearm Master feat make an opportunity attack against an invisible creature that enters their reach?

Print the new site header

I just entered the USA without passport control at Atlanta airport

How can caller ID be faked?

Using roof rails to set up hammock

Why swap space doesn't get filesystem check at boot time?

cannot access to my session

Justifying Affordable Bespoke Spaceships

How do I become a better writer when I hate reading?

Having some issue with notation in a Hilbert space

How to write a nice frame challenge?

I wish, I yearn, for an answer to this riddle

Scaling an object to change its key

Credit card validation in C



Site-To-Site VPN does not work for one specific subnet


I have a site to site VPN tunnel set up between offices, when I connect from home to either I cannot see the other sideSonicwall VPN only working for one remote subnetSite-to-Site IPSec VPN: bridged onlySplit tunnelling for Site to Site VPN on Cisco ASACisco ASA 5520 configuration on two SITE, A and BCisco ASA 5500 - SIP ports other than 5060Routing Help Needed - Site to Site VPNPlan for software site-to-site VPN in AWS VPCCisco ASA 5505 IPSEC VPN Connecting but not routing trafficCisco ASA 5505 can't talk to anything on Site-to-Site VPN






.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;








1















We are using Cisco 5500 series ASA for sites HQ and BX and there is a site-to-site vpn in between,



BX (subnet 192.168.6.0) can access to subnet 192.168.200.0 subnet at HQ but can't access 192.168.0.0 subnet at HQ.



Packet trace shows us that the data is being transmitted to both sites but it drops. I can't locate the source of the problem. I sense it is regarding routing but can't point the problem.



I know that it is better for me to post the logs but I don't know how. I need a hand on this, noobe here.



Thanks and happy new year.
K.










share|improve this question






















  • When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

    – David Schwartz
    Jan 2 '13 at 22:46











  • Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

    – Jonathan J
    Jan 2 '13 at 23:00











  • Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

    – user151692
    Jan 3 '13 at 17:03











  • David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

    – user151692
    Jan 3 '13 at 18:14











  • We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

    – user151692
    Jan 10 '13 at 21:08

















1















We are using Cisco 5500 series ASA for sites HQ and BX and there is a site-to-site vpn in between,



BX (subnet 192.168.6.0) can access to subnet 192.168.200.0 subnet at HQ but can't access 192.168.0.0 subnet at HQ.



Packet trace shows us that the data is being transmitted to both sites but it drops. I can't locate the source of the problem. I sense it is regarding routing but can't point the problem.



I know that it is better for me to post the logs but I don't know how. I need a hand on this, noobe here.



Thanks and happy new year.
K.










share|improve this question






















  • When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

    – David Schwartz
    Jan 2 '13 at 22:46











  • Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

    – Jonathan J
    Jan 2 '13 at 23:00











  • Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

    – user151692
    Jan 3 '13 at 17:03











  • David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

    – user151692
    Jan 3 '13 at 18:14











  • We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

    – user151692
    Jan 10 '13 at 21:08













1












1








1








We are using Cisco 5500 series ASA for sites HQ and BX and there is a site-to-site vpn in between,



BX (subnet 192.168.6.0) can access to subnet 192.168.200.0 subnet at HQ but can't access 192.168.0.0 subnet at HQ.



Packet trace shows us that the data is being transmitted to both sites but it drops. I can't locate the source of the problem. I sense it is regarding routing but can't point the problem.



I know that it is better for me to post the logs but I don't know how. I need a hand on this, noobe here.



Thanks and happy new year.
K.










share|improve this question














We are using Cisco 5500 series ASA for sites HQ and BX and there is a site-to-site vpn in between,



BX (subnet 192.168.6.0) can access to subnet 192.168.200.0 subnet at HQ but can't access 192.168.0.0 subnet at HQ.



Packet trace shows us that the data is being transmitted to both sites but it drops. I can't locate the source of the problem. I sense it is regarding routing but can't point the problem.



I know that it is better for me to post the logs but I don't know how. I need a hand on this, noobe here.



Thanks and happy new year.
K.







cisco-asa site-to-site-vpn






share|improve this question













share|improve this question











share|improve this question




share|improve this question










asked Jan 2 '13 at 22:43









user151692user151692

62




62












  • When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

    – David Schwartz
    Jan 2 '13 at 22:46











  • Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

    – Jonathan J
    Jan 2 '13 at 23:00











  • Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

    – user151692
    Jan 3 '13 at 17:03











  • David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

    – user151692
    Jan 3 '13 at 18:14











  • We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

    – user151692
    Jan 10 '13 at 21:08

















  • When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

    – David Schwartz
    Jan 2 '13 at 22:46











  • Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

    – Jonathan J
    Jan 2 '13 at 23:00











  • Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

    – user151692
    Jan 3 '13 at 17:03











  • David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

    – user151692
    Jan 3 '13 at 18:14











  • We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

    – user151692
    Jan 10 '13 at 21:08
















When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

– David Schwartz
Jan 2 '13 at 22:46





When you say 192.168.0.0 subnet, do you mean 192.168.0.0/24 subnet? And what do you mean by "to both sites"?

– David Schwartz
Jan 2 '13 at 22:46













Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

– Jonathan J
Jan 2 '13 at 23:00





Is the endpoint of the VPN at HQ on the 192.168.200.0 subnet? If so, has the 192.168.0.0 subnet been configured with a route back to the 192.168.6.0 subnet? Is there a conflict with another subnet, possibly at the end of another site-to-site VPN? Consider the networks of any business partners.

– Jonathan J
Jan 2 '13 at 23:00













Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

– user151692
Jan 3 '13 at 17:03





Thanks for the comment. HQ has a couple of subnets: 200.x, 0.x, and 1.x. Where can I identify if it is routed back to BX site (6.x) subnet?

– user151692
Jan 3 '13 at 17:03













David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

– user151692
Jan 3 '13 at 18:14





David, Yes that's what I meant. To both sites means that from Point A to B and Point B to A I am getting all the green checks with package track.

– user151692
Jan 3 '13 at 18:14













We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

– user151692
Jan 10 '13 at 21:08





We called Cisco, and they confirmed that this was a bug of the ASA we use. The data was not being encrypted so ASA was not sending it back. Guess what? Tech told us to restart the firewall, and problem went away. It sounds stupid, but sometimes you have to remember: Router is a fing router and it requires fing restart. Excuse my language but I really got frustrated.

– user151692
Jan 10 '13 at 21:08










1 Answer
1






active

oldest

votes


















0














It was a bug in the firewall. Cisco confirmed it. Router restart fixed the problem.






share|improve this answer


















  • 1





    We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

    – user152910
    Jan 10 '13 at 21:57










protected by Michael Hampton Feb 22 '13 at 15:26



Thank you for your interest in this question.
Because it has attracted low-quality or spam answers that had to be removed, posting an answer now requires 10 reputation on this site (the association bonus does not count).



Would you like to answer one of these unanswered questions instead?














1 Answer
1






active

oldest

votes








1 Answer
1






active

oldest

votes









active

oldest

votes






active

oldest

votes









0














It was a bug in the firewall. Cisco confirmed it. Router restart fixed the problem.






share|improve this answer


















  • 1





    We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

    – user152910
    Jan 10 '13 at 21:57
















0














It was a bug in the firewall. Cisco confirmed it. Router restart fixed the problem.






share|improve this answer


















  • 1





    We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

    – user152910
    Jan 10 '13 at 21:57














0












0








0







It was a bug in the firewall. Cisco confirmed it. Router restart fixed the problem.






share|improve this answer













It was a bug in the firewall. Cisco confirmed it. Router restart fixed the problem.







share|improve this answer












share|improve this answer



share|improve this answer










answered Jan 10 '13 at 21:10









user151692user151692

62




62







  • 1





    We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

    – user152910
    Jan 10 '13 at 21:57













  • 1





    We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

    – user152910
    Jan 10 '13 at 21:57








1




1





We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

– user152910
Jan 10 '13 at 21:57






We're seeing similar issues -- did they give you a bug ref at all? what code version is your ASA on?

– user152910
Jan 10 '13 at 21:57






protected by Michael Hampton Feb 22 '13 at 15:26



Thank you for your interest in this question.
Because it has attracted low-quality or spam answers that had to be removed, posting an answer now requires 10 reputation on this site (the association bonus does not count).



Would you like to answer one of these unanswered questions instead?



Popular posts from this blog

Club Baloncesto Breogán Índice Historia | Pavillón | Nome | O Breogán na cultura popular | Xogadores | Adestradores | Presidentes | Palmarés | Historial | Líderes | Notas | Véxase tamén | Menú de navegacióncbbreogan.galCadroGuía oficial da ACB 2009-10, páxina 201Guía oficial ACB 1992, páxina 183. Editorial DB.É de 6.500 espectadores sentados axeitándose á última normativa"Estudiantes Junior, entre as mellores canteiras"o orixinalHemeroteca El Mundo Deportivo, 16 setembro de 1970, páxina 12Historia do BreogánAlfredo Pérez, o último canoneiroHistoria C.B. BreogánHemeroteca de El Mundo DeportivoJimmy Wright, norteamericano do Breogán deixará Lugo por ameazas de morteResultados de Breogán en 1986-87Resultados de Breogán en 1990-91Ficha de Velimir Perasović en acb.comResultados de Breogán en 1994-95Breogán arrasa al Barça. "El Mundo Deportivo", 27 de setembro de 1999, páxina 58CB Breogán - FC BarcelonaA FEB invita a participar nunha nova Liga EuropeaCharlie Bell na prensa estatalMáximos anotadores 2005Tempada 2005-06 : Tódolos Xogadores da Xornada""Non quero pensar nunha man negra, mais pregúntome que está a pasar""o orixinalRaúl López, orgulloso dos xogadores, presume da boa saúde económica do BreogánJulio González confirma que cesa como presidente del BreogánHomenaxe a Lisardo GómezA tempada do rexurdimento celesteEntrevista a Lisardo GómezEl COB dinamita el Pazo para forzar el quinto (69-73)Cafés Candelas, patrocinador del CB Breogán"Suso Lázare, novo presidente do Breogán"o orixinalCafés Candelas Breogán firma el mayor triunfo de la historiaEl Breogán realizará 17 homenajes por su cincuenta aniversario"O Breogán honra ao seu fundador e primeiro presidente"o orixinalMiguel Giao recibiu a homenaxe do PazoHomenaxe aos primeiros gladiadores celestesO home que nos amosa como ver o Breo co corazónTita Franco será homenaxeada polos #50anosdeBreoJulio Vila recibirá unha homenaxe in memoriam polos #50anosdeBreo"O Breogán homenaxeará aos seus aboados máis veteráns"Pechada ovación a «Capi» Sanmartín e Ricardo «Corazón de González»Homenaxe por décadas de informaciónPaco García volve ao Pazo con motivo do 50 aniversario"Resultados y clasificaciones""O Cafés Candelas Breogán, campión da Copa Princesa""O Cafés Candelas Breogán, equipo ACB"C.B. Breogán"Proxecto social"o orixinal"Centros asociados"o orixinalFicha en imdb.comMario Camus trata la recuperación del amor en 'La vieja música', su última película"Páxina web oficial""Club Baloncesto Breogán""C. B. Breogán S.A.D."eehttp://www.fegaba.com

Vilaño, A Laracha Índice Patrimonio | Lugares e parroquias | Véxase tamén | Menú de navegación43°14′52″N 8°36′03″O / 43.24775, -8.60070

Cegueira Índice Epidemioloxía | Deficiencia visual | Tipos de cegueira | Principais causas de cegueira | Tratamento | Técnicas de adaptación e axudas | Vida dos cegos | Primeiros auxilios | Crenzas respecto das persoas cegas | Crenzas das persoas cegas | O neno deficiente visual | Aspectos psicolóxicos da cegueira | Notas | Véxase tamén | Menú de navegación54.054.154.436928256blindnessDicionario da Real Academia GalegaPortal das Palabras"International Standards: Visual Standards — Aspects and Ranges of Vision Loss with Emphasis on Population Surveys.""Visual impairment and blindness""Presentan un plan para previr a cegueira"o orixinalACCDV Associació Catalana de Cecs i Disminuïts Visuals - PMFTrachoma"Effect of gene therapy on visual function in Leber's congenital amaurosis"1844137110.1056/NEJMoa0802268Cans guía - os mellores amigos dos cegosArquivadoEscola de cans guía para cegos en Mortágua, PortugalArquivado"Tecnología para ciegos y deficientes visuales. Recopilación de recursos gratuitos en la Red""Colorino""‘COL.diesis’, escuchar los sonidos del color""COL.diesis: Transforming Colour into Melody and Implementing the Result in a Colour Sensor Device"o orixinal"Sistema de desarrollo de sinestesia color-sonido para invidentes utilizando un protocolo de audio""Enseñanza táctil - geometría y color. Juegos didácticos para niños ciegos y videntes""Sistema Constanz"L'ocupació laboral dels cecs a l'Estat espanyol està pràcticament equiparada a la de les persones amb visió, entrevista amb Pedro ZuritaONCE (Organización Nacional de Cegos de España)Prevención da cegueiraDescrición de deficiencias visuais (Disc@pnet)Braillín, un boneco atractivo para calquera neno, con ou sen discapacidade, que permite familiarizarse co sistema de escritura e lectura brailleAxudas Técnicas36838ID00897494007150-90057129528256DOID:1432HP:0000618D001766C10.597.751.941.162C97109C0155020