LAN Routing

Procurve 2900 issue

Occasional Contributor

Procurve 2900 issue

We have several vpn tunnels to clients so they can come into our network and hit our sql clusters. Coming in works fine but I can't ping/connect from our internal sql servers over to the internal ip address of one of their internal boxes. Here's the setup: <- client's internal box
public ip <- client's outside firewall interface
~~internets/vpn tunnel~~ (nat exempt)
public ip <- our outside asa 5510 interface <- our inside asa interface <- hp switch interface to asa <- TDS interface to switch (most servers colo'd there) <- our internal sql server

I can ping from our internal sql server to internal asa interface just fine but not over the tunnel to the client's internal box. I dropped a packet capture on the internal asa interface and I get nothing pinging to the client's internal box so I'm pretty sure it's not the asa. There's no default gateway set on the hp since ip routing is enabled which is normal from what I can tell. Here's a snippet of the hp:

ip config:

EMC_MGMT | Manual No
PROXY | Disabled
TO_OFFICE | Manual No
TO_ASA_SOUTH | Manual No

hp routing table: 180 static 1 1 reject static 0 0 lo0 connected 1 0 connected 1 0 TDS_INTERNAL 16 connected 1 0 EMC_MGMT 24 connected 1 0 130 static 1 1 TO_OFFICE 130 connected 1 0 TO_ASA_SOUTH 180 connected 1 0

which has the default route to the internal asa interface.