<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Problem with cisco vpn client in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753289#M192869</link>
    <description>&lt;P style="font-size: 14.3999996185303px;"&gt;We are using cisco vpn client to connect VPN server (ASA 5510).With VPN Connection, Cisco vpn client can only connect the services in LAN other than services is published/NATed to internet via this ASA 5510. For example: On one server, vpn client can not access the services publishing to the Internet while other services not publish to the Internet on the same server remains accessible via vpn client&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;How can I fix this problem ?&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;Thanks&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;Alex&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 06:25:18 GMT</pubDate>
    <dc:creator>luongdung</dc:creator>
    <dc:date>2019-03-12T06:25:18Z</dc:date>
    <item>
      <title>Problem with cisco vpn client</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753289#M192869</link>
      <description>&lt;P style="font-size: 14.3999996185303px;"&gt;We are using cisco vpn client to connect VPN server (ASA 5510).With VPN Connection, Cisco vpn client can only connect the services in LAN other than services is published/NATed to internet via this ASA 5510. For example: On one server, vpn client can not access the services publishing to the Internet while other services not publish to the Internet on the same server remains accessible via vpn client&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;How can I fix this problem ?&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;Thanks&lt;/P&gt;&lt;P style="font-size: 14.3999996185303px;"&gt;Alex&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:25:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753289#M192869</guid>
      <dc:creator>luongdung</dc:creator>
      <dc:date>2019-03-12T06:25:18Z</dc:date>
    </item>
    <item>
      <title>All I can say is you most</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753290#M192870</link>
      <description>&lt;P&gt;All I can say is you most probably need split tunneling on your VPN&amp;nbsp;client so access to public addresses does not go through the VPN tunnel.Also you might need to manipulate your DNS&lt;/P&gt;</description>
      <pubDate>Thu, 13 Aug 2015 04:21:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753290#M192870</guid>
      <dc:creator>Richard Bradfield</dc:creator>
      <dc:date>2015-08-13T04:21:37Z</dc:date>
    </item>
    <item>
      <title>Hi Alex, I would agree with</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753291#M192871</link>
      <description>&lt;P&gt;Hi Alex,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would agree with&amp;nbsp;chrbradf1, if you have a given&amp;nbsp;publically accessiable services running on a server, then&amp;nbsp;you must include that paticular public ip-address in the split-tunnel acl and you don't include that IP-address for nat-examption that should work for you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Rizwan Rafeek.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Aug 2015 14:37:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753291#M192871</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2015-08-13T14:37:57Z</dc:date>
    </item>
    <item>
      <title>Thanks rizwanr74 and</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753292#M192872</link>
      <description>&lt;P&gt;Thanks &lt;A href="https://supportforums.cisco.com/users/rizwanr74" title="View user profile."&gt;rizwanr74&lt;/A&gt; and chrbradf1. Vpn client can connect the service with the public ip address on the server but&amp;nbsp;can not access the same service with local ip &amp;nbsp;on the same server&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14.3999996185303px;"&gt;How can I fix this problem ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Aug 2015 06:14:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753292#M192872</guid>
      <dc:creator>luongdung</dc:creator>
      <dc:date>2015-08-14T06:14:23Z</dc:date>
    </item>
    <item>
      <title>Hi there, "Vpn client can</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753293#M192873</link>
      <description>&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;Hi there,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;SPAN style="font-size:12px;"&gt;"Vpn client can connect the service with the public ip address on the server but can not access the same service with local ip &amp;nbsp;on the same server"&lt;/SPAN&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;Reason that client can access service on public address either because they are accessing it outside of the tunnel or via the tunnel by the means of split-tunnel.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 12px;"&gt;The reason why cannot access it on private address, is because the static-nat public to private. The return traffic will be subject to static-nat which will resulted in asymmetric traffic path.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 12px;"&gt;Your client cannot access static-natted private address, unless they are access it on public address, the reason&amp;nbsp;asymmetric traffic path.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;Hop that helps.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Aug 2015 15:46:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753293#M192873</guid>
      <dc:creator>rizwanr74</dc:creator>
      <dc:date>2015-08-14T15:46:07Z</dc:date>
    </item>
    <item>
      <title>I think this will be a DNS</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753294#M192874</link>
      <description>&lt;P&gt;I think this will be a DNS issue, You will need to have a DNS server that the VPN clients use&amp;nbsp;that points to the internal address of &amp;nbsp;public facing servers&lt;/P&gt;</description>
      <pubDate>Sat, 15 Aug 2015 23:47:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-cisco-vpn-client/m-p/2753294#M192874</guid>
      <dc:creator>Richard Bradfield</dc:creator>
      <dc:date>2015-08-15T23:47:51Z</dc:date>
    </item>
  </channel>
</rss>

