FirewallWizards
[Top] [All Lists]

Re: [fw-wiz] ASA 5510 problem

To: "Firewall Wizards Security Mailing List" <firewall-wizards@listserv.icsalabs.com>
Subject: Re: [fw-wiz] ASA 5510 problem
From: "Chris Wargaski" <cwargaski@rmstsi.com>
Date: Thu, 3 May 2007 01:00:10 -0500
Delivered-to: sp-com-lists@consult.net
Delivered-to: fwwizards-list2@consult.net
Delivered-to: firewall-wizards@listserv.icsalabs.com
List-archive: <https://listserv.icsalabs.com/pipermail/firewall-wizards>
List-help: <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=help>
List-id: Firewall Wizards Security Mailing List <firewall-wizards.listserv.icsalabs.com>
List-post: <mailto:firewall-wizards@listserv.icsalabs.com>
List-subscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=subscribe>
List-unsubscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=unsubscribe>
References: <5622C156-1047-4C6F-B470-9EEDD8095048@norcalnetworks.com>
Reply-to: Firewall Wizards Security Mailing List <firewall-wizards@listserv.icsalabs.com>
Sender: firewall-wizards-bounces@listserv.icsalabs.com
Thread-index: AceM5evButrdD26JTXWnFedEsFgAxwAYJCVl
Thread-topic: [fw-wiz] ASA 5510 problem
Zeke--

   Are you able to access anything when you establish the VPN tunnel? How are 
you trying to access? (ping, email client?) Also, when you connect, is your 
connecting workstation directly connected to a public network, or are you 
behind a device performing NAT (like a home firewall)?

   Can you post snippets of the configuration? (group-policy block, and any 
line beginning with the word crypto).



cjw

Christopher J. Wargaski 
RMS Technology Solutions, Inc.
cwargaski@rmstsi.com
(847) 215-1661 x223



-----Original Message-----
From: firewall-wizards-bounces@listserv.icsalabs.com on behalf of Dehnert James 
Sr
Sent: Mon 4/30/2007 7:04 PM
To: firewall-wizards@listserv.icsalabs.com
Subject: [fw-wiz] ASA 5510 problem
 
I have a Cisco ASA 5510 with an External, Internal, and DMZ  
interfaces.  I have a mail server in the DMZ and I have configured  
the ASA so that I can get to it internally an externally, however,  
when I log in using the IPSEC VPN I cannot connect.

The internal address range is 192.168.100.0/24
The dmz address range is 192.168.200.0/24
The VPM pool range is 10.10.10.10/24

I have mappings internally to so that any 192.168.100 host can  
connect to the mail server at 192.168.200.25, but the VPN access  
issue has me flummoxed.

Cisco has examples of VPN or DMZ, bit nothing with info on both.

Any pointers would be greatly appreciated.



Thanks,
     Zeke

--
James "Zeke" Dehnert
mailto:jdehnert@norcalnetworks.com
Phone: +1 707.546.6620 x602 Fax: +1 707.324.8043
"Life is racing, everything else is just waiting"


_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

<<winmail.dat>>

_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
<Prev in Thread] Current Thread [Next in Thread>