Hopefully this is a quick & easy question. I have an IPSec tunnel up between network A (10.43.1.0/24) and network B (10.43.2.0/24). It's working properly and workstations on each 10.x.y.z network can ping across. 4th octet is the default gateway on each network. I can't ping from the router or PIX to the other network even if I specify to use the correct interface. Here's why I'm concerned. I'm trying to enable TACACS+ for the enable verification on all routers on the WAN terminating through the PIX for VPN. If I can't ping from the routers, how will it see the TACACS+ box behind the PIX on the 10.43.1.x/24 network? Will this work? ICMP is enabled and the tunnel is up since I can ping from workstations across the IPSec Tunnel. My first thought is adding a route statement, but if I can't even force a ping through a specific interface, I'm not sure if that would work either. Any ideas? Allen May Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=9265&t=9265 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

