PIX vpn problem

demonbrian

Member
Jul 10, 2001
27
0
0
We have a call out to Cisco as well for help on this but thought I would give you guys a shot.

The situation is that we have a central location with a PIX firewall (lets call him A). we have two satellite locations with pix firewalls that maintain ipsec tunnels to (A) - lets call them B and C. now the issue is that traffic from B wont flow to C and vice-versa. B and C can hit A and beyond into the network but cant ping or trace. I?m guessing the pix is locking down the tunnels to prevent any "cross-contamination" - keeping clients from each other.

Any ideas?
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
That's exactly what they are doing. By default this behavior isn't allowed.

search cisco for configuration hub-spoke VPNs and allowing the spokes to communicate.

I can't recall off the top of my head, but if you look at the configuration pages for PIX it is right there.