<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: RAVPN for FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4705670#M1094349</link>
    <description>&lt;P&gt;You're welcome.&lt;/P&gt;
&lt;P&gt;As a general rule, static NAT is only for 1-1 mapping of an inside address to an outside address.&lt;/P&gt;</description>
    <pubDate>Wed, 19 Oct 2022 14:48:47 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2022-10-19T14:48:47Z</dc:date>
    <item>
      <title>RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4690245#M1093491</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;I deployed a Cisco FTD using FDM and enabled VPN access to our internal network. I proceeded step by step, initiating with enabling smart license VPN.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm using local identity as a user logon, an internal certificate, split tunneling, and an IP pool assignment, and when I tried to connect to the VPN, it failed with errors "The connection attempt has timed out. Please check your internet connectivity."&lt;/P&gt;
&lt;P&gt;For your information, I have a public IP with subnet /28 and I have configured NAT to access the web server using another IP rather than the same IP with VPN, the web server can be accessed without issue.&lt;/P&gt;
&lt;P&gt;below is our NAT statement, web server IP&amp;nbsp;20x.xx4.x2.19 and interface IP for VPN is&amp;nbsp;20x.xx4.x2.18&lt;/P&gt;
&lt;P&gt;nat (outside,inside) source static any any destination static websvr_20x.xx4.x2.19 webserver_10.100.100.2&lt;BR /&gt;!&lt;BR /&gt;object network IPv4-Private-10.0.0.0-8&lt;BR /&gt;nat (inside,outside) static interface&lt;/P&gt;
&lt;P&gt;FTD version : 7.0.4&lt;/P&gt;
&lt;P&gt;FPR model : 1150&lt;/P&gt;
&lt;P&gt;Thank you in advance for your help.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Sep 2022 02:19:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4690245#M1093491</guid>
      <dc:creator>Azlan.my07</dc:creator>
      <dc:date>2022-09-20T02:19:02Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704052#M1094285</link>
      <description>&lt;P&gt;Hi Azlan, could I know which document did you refer to? Please share the link let me know more about what kind of VPN(Remote access VPN or L2L VPN) you are setting.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And please check the network connectivity with&amp;nbsp;&lt;SPAN&gt;20x.xx4.x2.18.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 07:09:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704052#M1094285</guid>
      <dc:creator>Sherry Pang</dc:creator>
      <dc:date>2022-10-17T07:09:27Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704090#M1094287</link>
      <description>&lt;P&gt;Sorry, I noted that you are using RAVPN, please share the configuration guide you are referring to. You mentioned web server, is it used for VPN?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 08:04:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704090#M1094287</guid>
      <dc:creator>Sherry Pang</dc:creator>
      <dc:date>2022-10-17T08:04:32Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704288#M1094296</link>
      <description>&lt;P&gt;First, your NAT for 10.0.0.0-8 is incorrect. It should be dynamic, not static. As a static NAT, it may be taking up a connection on port 443 which would "break" the VPN in the way you are seeing.&lt;/P&gt;
&lt;P&gt;Fix that and then, if you browse to the FTD's outside address using https, do you see the VPN login portal page?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 16:56:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704288#M1094296</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-10-17T16:56:21Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704605#M1094306</link>
      <description>&lt;P&gt;Hi Sherry,&lt;/P&gt;
&lt;P&gt;I'm referring this guide &amp;gt;&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/anyconnect-secure-mobility-client/215532-configure-remote-access-vpn-on-ftd-manag.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/anyconnect-secure-mobility-client/215532-configure-remote-access-vpn-on-ftd-manag.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Web server actually from our user access to the internal server, not for VPN.&lt;/P&gt;</description>
      <pubDate>Tue, 18 Oct 2022 01:51:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704605#M1094306</guid>
      <dc:creator>Azlan.my07</dc:creator>
      <dc:date>2022-10-18T01:51:01Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704608#M1094307</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for your reply. Do you mean change type from Static to Dynamic? or source IP change to any? below is screenshot our outgoing NAT.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Azlanmy07_0-1666057963137.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/164977i34D3E7AB1FA159C4/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Azlanmy07_0-1666057963137.png" alt="Azlanmy07_0-1666057963137.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Oct 2022 01:53:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704608#M1094307</guid>
      <dc:creator>Azlan.my07</dc:creator>
      <dc:date>2022-10-18T01:53:15Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704697#M1094312</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1277460"&gt;@Azlan.my07&lt;/a&gt; change the type of NAT to Dynamic and deploy.&lt;/P&gt;</description>
      <pubDate>Tue, 18 Oct 2022 07:05:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4704697#M1094312</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-10-18T07:05:25Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4705662#M1094348</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp; Thank you so much, Marvin, it now works after changing to Dynamic. Thank you for helping, I'm glad learn something today.&lt;/P&gt;</description>
      <pubDate>Wed, 19 Oct 2022 14:38:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4705662#M1094348</guid>
      <dc:creator>Azlan.my07</dc:creator>
      <dc:date>2022-10-19T14:38:19Z</dc:date>
    </item>
    <item>
      <title>Re: RAVPN for FTD</title>
      <link>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4705670#M1094349</link>
      <description>&lt;P&gt;You're welcome.&lt;/P&gt;
&lt;P&gt;As a general rule, static NAT is only for 1-1 mapping of an inside address to an outside address.&lt;/P&gt;</description>
      <pubDate>Wed, 19 Oct 2022 14:48:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ravpn-for-ftd/m-p/4705670#M1094349</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-10-19T14:48:47Z</dc:date>
    </item>
  </channel>
</rss>

