Hello everyone,
I have set up a IPsec tunnel between 2 Pix 501. I have accepted ICMP for both interface. I have opened up the firewall inside and outside to ICMP and IP flux from anywhere to anywhere.
The ipsec tunnels were OK, as soon as I opened up the ports, the IPSec went down (ISAKMP is still up).
I can ping outside addresses but I cannot ping within the firewall to any address, including the IP of the inside interface on the other end of the tunnel.
I've done a fair bit of VPN set ups in the last few years,including a worldwide set up with Cisco 2600 concentrator and over 100 Cisco SOHOs on remote sites. With all my experience, theis Pix gizmo has me stunned. This is by far the most complicated and obscure OS I have ever seen.
Just about to throw the whole thing out of the window and give my client his money back ! HHHEEEEEEELLLLLLLLP !