Kim,
If you run a 'debug cry isa 2' on the ASA, attempt connections from the PIX and see if you're getting any useful debugs from the PIX. You'll get much more useful information on the receiver end. If you're not seeing anything on the ASA, you'll need to review your interesting traffic ACLs and associated no NAT's if you're using internal traffic.
-ryan
-----Original Message-----
From: nobody_at_groupstudy.com [mailto:nobody_at_groupstudy.com] On Behalf Of Teu Kim Loon ???
Sent: Wednesday, July 22, 2009 11:14 PM
To: Cisco certification; ccielab_at_groupstudy.com
Subject: IPSec VPN - Interesting traffic only trigger crypto map from one end
Hello Experts,
IPSec VPN between ASA 8.0 and PIX 6.3. I verified identical IKE and IPSec
configuration on both ends. However, I am only able to initiate connection
from ASA.
Any idea why?
Thanks.
Kim
Blogs and organic groups at http://www.ccie.net
Received on Wed Jul 22 2009 - 23:22:48 ART
This archive was generated by hypermail 2.2.0 : Sat Aug 01 2009 - 13:10:23 ART