Once the tunnel was up and was able to ping on both sides, I found another issue when I tried to run a curl (http) against the webserver running on the test machines, the TCP handshake was successful, but when the webserver was serving the webpage, the content wasn't getting to the other side.

Re: VPN Tunnel up, But cannot ping across it?? ok i erased that line and also the one like it on the remote end. still no success. the 2941 on the remote side has a default route of which is the inside interface of the ASA. it seems like the ASA isnt routing the request to the 2941?

For VPN Tunnel ID, must also enable the Check Point gateway to ping the other end of the tunnel to check if the tunnel is up. Select Ping.

I'm have a tunnel between a SonicWall NSA2400 (corp office) and a TZ215W (branch). The VPN link shows to be up, however, traffic counter stays at 0 and I can't ping to the remote network.

To test VPN ping times, simply perform a Ping test when connected to a VPN server. You can compare this to ping times when not using a VPN by running a Ping test with the VPN turned off. And you can compare ping times when connected to different VPN servers by connecting to each in turn and running a ping test.

Simply put it, VPN will only improve the ms ping and packet loss if you have a bad ISP with bad routing, using a VPN on a dial-up will not magically makes your internet connection faster. VPN is nothing more than a dedicated routing service, more often than not, a better routing provider than your existing ISP.

The subnets on each far side of the gateways are in the 10.x.x.x ranges (a few different ones as a couple subnets are connected to the SRX). I saw in some examples that others were using a GRE tunnel over the VPN, so I thought I would get the ipsec going and then once I can ping I would set up a GRE tunnel and route the 10.x.x.x through that level for easier management on both sides.

We configured a site-to-site VPN and here is the topology. I control the network on the left but not the one on the right. All devices in our network has public IPs. Server---ASA5505---Cisco887=====Internet=====ASA5510---devices. I can see the tunnel is up and can do extended ping using a loopback interface.