AnsweredAssumed Answered

No ssh access to VPN peer outside IP

Question asked by Vlad Voronko on Apr 24, 2018
Latest reply on Apr 24, 2018 by Kim Moberg

While testing a site-to-site VPN tunnel between CP80.10 and Cisco ASA, I noticed that right after I had configured the IPSec peer on CP80.10, I was no longer able to ssh to 10.0.14.101 (ASA outside IP) to manage the device. Then I looked into the logs on CP and found out that CP80.10 is trying to encrypt packets destined to ASA outside IP address 10.0.14.101. I wasn't able to find any info about this issue. Is there any way how I can disable or turn off this behavior? Screenshot of the logs in the attachment. Thanks.

Attachments

Outcomes