Re: ipsec tunnel established but no pinging



Thanks all. I turned on debugging by doing "debug ip icmp" and I'm just
getting alot of garbage. I don't think it's catching any of the pings I
am sending across. For example I tried pinging a known good network
across a good vpn tunnel and the logs don't show anything at all. Is
there a different command?

Also I'm thinking the issue might be with the remote PIX. I noticed at
their end there are no routes on the routing table. It's a PIX501
running 6.3.5 IOS and I am assuming that a default route to the outside
interface is not assumed automatically by the device. And so if my
pings even do reach the remote machine the echo-reply wouldn't come
back since there is no default route? Does this make any sense? :)

Thanks.

Zuhair Al-Zubaidi wrote:
or, try enabling debug mode and see what happens,

cheers,
Zuhair Al Zubaidi

On Dec 28, 2:09 am, "psychogenic" <angryl...@xxxxxxxxx> wrote:
I have a site-to-site vpn tunnel established between a 2600 router and
a Pix501 and both IKE and IPSEC tunnel shows up as established with no
errors. I can ping the endpoint IPs from both sides but we can not ping
each other's internal networks. The endpoint on my 2600 router is a
loopback inteface I created and I added a route so that any traffic
destined for that remote site should go through this interface. I don't
know what the problem is and I can't tell where the ping is failing.
Anyone shed any light on this? Is it the loopback interface that's
having the problem? I already have a vpn tunnel terminating to my
outside interface and want to avoid adding this other one to it as
well...

.