<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Route Based VPN FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5072112#M1111377</link>
    <description>&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;We have several Policy based VPNs, I have read in a Cisco document that the sysopt permit-vpn is not supported with Route based VPN and I will need to configure access control for this, so that being said does this affect our policy based VPNs which have the Bypass access Control for Decrypted traffic (sysopt permit-vpn) box checked or will they be ok.?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Wed, 17 Apr 2024 15:38:19 GMT</pubDate>
    <dc:creator>benolyndav</dc:creator>
    <dc:date>2024-04-17T15:38:19Z</dc:date>
    <item>
      <title>Route Based VPN FTD</title>
      <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5072112#M1111377</link>
      <description>&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;We have several Policy based VPNs, I have read in a Cisco document that the sysopt permit-vpn is not supported with Route based VPN and I will need to configure access control for this, so that being said does this affect our policy based VPNs which have the Bypass access Control for Decrypted traffic (sysopt permit-vpn) box checked or will they be ok.?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 17 Apr 2024 15:38:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5072112#M1111377</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2024-04-17T15:38:19Z</dc:date>
    </item>
    <item>
      <title>Re: Route Based VPN FTD</title>
      <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5072119#M1111378</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131"&gt;@benolyndav&lt;/a&gt; traffic VPNs (Policy or Routed based) on FTD need to be explictly permitted in the Access Control rules.&lt;/P&gt;
&lt;P&gt;I would not want to bypass the ACP for VPN traffic, it is better to explictly allow/deny the traffic.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Apr 2024 15:41:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5072119#M1111378</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-04-17T15:41:23Z</dc:date>
    </item>
    <item>
      <title>Re: Route Based VPN FTD</title>
      <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077073#M1111565</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Yes I agree but unfortunatley thats the way the VPNs are configured with the sysopt box checked I have wondered why myself.&lt;BR /&gt;Cisco's documentation as this line below , dose this mean I cant create a route based VPNs as we have sysop selected on our policy based VPNs, .??&lt;BR /&gt;(&lt;STRONG&gt;&lt;SPAN&gt;Note:&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt;sysopt connection permit-vpn does not work with Route Based VPN tunnels. The Access Control Rules need to be configured for both IN-&amp;nbsp; OUT zones and OUT -&amp;nbsp; IN zones.)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class=""&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 24 Apr 2024 10:30:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077073#M1111565</guid>
      <dc:creator>benolyndav</dc:creator>
      <dc:date>2024-04-24T10:30:12Z</dc:date>
    </item>
    <item>
      <title>Re: Route Based VPN FTD</title>
      <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077102#M1111566</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/445131"&gt;@benolyndav&lt;/a&gt; you can create a route based VPN, just create explict Access Control rules for traffic that is routed over that route-based VPN tunnel.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2024 10:46:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077102#M1111566</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-04-24T10:46:26Z</dc:date>
    </item>
    <item>
      <title>Re: Route Based VPN FTD</title>
      <link>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077116#M1111567</link>
      <description>&lt;P&gt;When you use use sysopt permit vpn it effect traffic pass through interface you enable ipsec on it'&lt;/P&gt;
&lt;P&gt;The route-based vpn use different interface and hence not effect by sysopt (bypass).&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2024 11:07:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/route-based-vpn-ftd/m-p/5077116#M1111567</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-04-24T11:07:19Z</dc:date>
    </item>
  </channel>
</rss>

