Cisco VPN client not passing data through PIX 501

Aug 29, 2006 3 Replies

I have a pc with Cisco client installed that terminates on a PIX 501. when the local lan has a PIX outgoing the VPN comes up but no traffic will pass. When the local lan has a Linksys or Dlink firewall/router everything works fine I tried changing MTU, went to 576 no change, I added ipsec nat transparency on the local (originating side) no change.. outgoing PIX is wide open, no access lists etc..



any ideas?



Hi Fred,

You may be experiencing a "10 concurrent user" issue with your PIX 501 license.

Cisco PIX Security Appliance Licensing

formatting link
Hope this helps.

Brad Reese Cisco IOS Software - Compatible Partner Matrix by Technology

formatting link
Hendersonville Road, Suite 17 Asheville, North Carolina USA 28803 USA & Canada: 877-549-2680 International: 828-277-7272 Fax: 775-254-3558 AIM: R2MGrant BradReese.Com - Global Cisco Systems Pre-Sales Support
formatting link

Could you clarify whether one PIX is involved or two?

And if the outgoing PIX has no access lists, then it will prohibit some kinds of return traffic, because some kinds of return traffic look like "new" traffic.

The 10 license count doesnt come in to play, there is only 2 other devices on it.

I dont think it is an inbound problem on the pix, as everything else works normal..

setup is follows:

client ====> pix a >=== internet =====>pix b (client establishes here)

vpn establishes but no traffic passed

client ====> netgear etc >=====internet ====== >pix b (client establishes here)

vpn works normally

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required