Vpn Tunnel Up But Cannot Ping
The tunnel for the secondary client is up and running and i am able to ping both sides of the tunnel.
Vpn tunnel up but cannot ping. Tunnel up but cannot ping i set up a tunnel from an asa called salmonarm to a cisco 1921 called pg 1921. It takes a while to drop the vpn and when i re establish it data works for a few mins. Use the following steps to troubleshoot a vpn tunnel that is active but not passing data.
If your vpn is down then go to kb10100 resolution guide how to troubleshoot a vpn tunnel that is down or not active if your vpn is going up and down then proceed with the following steps. You need to make sure the egress isp for the 10 45 0 0 16 traffic from the 1921 is the same isp that is terminating the vpn tunnel. Another thing which i can t tell from your config is the primary isp is terminating the vpn tunnel.
To complicate things a little more one side has 2 gateways. I need to understand and resolve my issue. I am not sure if this is part of the problem since i have site to site vpns at other locations that work fine using similar settings.
The tunnel goes up when i do the first ping from 192 168 0 1 to 172 16 0 1 or the other way around but no traffic goes through. I think it could be that i m using a multilink interface since i have successfully configured tons of vpn tunnels and this is the first time i have this issue. The tunnel doesnt block icmp and i have mutiple other sites configured with the same equipment working.
Vpn ipsec is up but can t ping 2018 09 01 11 24 36 0 hi by default you can t ping from fortigate to vpn site lan to ping from fortigate you should do source ping like eg exe ping option source your lan interface ip exe ping destination vpn lan ip now you should be able to ping regds ashik nse8. I can ping the cme 192 168 2 1 router from the office main 192 168 10 1 router. It will send ping data for about 1 or 2 minutes and goes deas yet still up active.
I cannot ping from my local 2941 to the remote 2941. I just set up a site to site vpn using 2 sonicwall tz 300s. I ve managed to get the tunnel up and everything seemed ok as sh cry isa sa sh cry session and sh cry ipsec sa didn t seem to have any problems.