<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Split Tunnel somehow not working in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837797#M459238</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jesse,&lt;/P&gt;&lt;P&gt;have a look here, &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080702999.shtml#s2"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080702999.shtml#s2&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Hope this help.&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;Andrea&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 17 Feb 2012 12:59:41 GMT</pubDate>
    <dc:creator>andrea.meconi</dc:creator>
    <dc:date>2012-02-17T12:59:41Z</dc:date>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837792#M459221</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At our client I configured Split Tunneling on an ASA but somehow it doesn't seem to function.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have the feeling I'm missing something but I don't see what.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Situation as followed:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Network: 10.38.11.192 255.255.255.224&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;group-policy VPNCLIENTS attributes&lt;/P&gt;&lt;P&gt; dns-server value 10.38.11.203&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value Split_Tunnel_VDDnew&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Split_Tunnel_VDD standard permit 10.38.11.192 255.255.255.224&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip local pool VPNDHCP 10.38.12.1-10.38.12.100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't see what is wrong here since the same setup is used at other clients.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope someone can help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Greetings Jesse&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:31:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837792#M459221</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2019-03-11T22:31:14Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837793#M459229</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please verify your ACL name.&lt;/P&gt;&lt;P&gt;Andrea&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 10:59:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837793#M459229</guid>
      <dc:creator>andrea.meconi</dc:creator>
      <dc:date>2012-02-17T10:59:37Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837794#M459231</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Woops, copied an old ACL, correct split-tunnel list:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Split_Tunnel_VDDnew extended permit ip 10.38.11.192 255.255.255.224 10.38.12.0 255.255.255.0&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 11:04:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837794#M459231</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2012-02-17T11:04:45Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837795#M459233</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jesse.&lt;/P&gt;&lt;P&gt;You can use the standard ACL to specify the network behind the ASA.&lt;/P&gt;&lt;P&gt;Can you remove the NAT statement, please?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 11:27:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837795#M459233</guid>
      <dc:creator>andrea.meconi</dc:creator>
      <dc:date>2012-02-17T11:27:15Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837796#M459234</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, should have mentioned it before but I'm fairly new to this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Isn't the NAT statement mandatory since my external adres is bound to it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also what do you mean with standard ACL, or does NAT look at the standard ACL once you remove it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Again sorry, I started doing ASA's and PIX's recently and find them awefully cryptic sometimes.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 12:15:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837796#M459234</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2012-02-17T12:15:34Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837797#M459238</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jesse,&lt;/P&gt;&lt;P&gt;have a look here, &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080702999.shtml#s2"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080702999.shtml#s2&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Hope this help.&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;Andrea&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 12:59:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837797#M459238</guid>
      <dc:creator>andrea.meconi</dc:creator>
      <dc:date>2012-02-17T12:59:41Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837798#M459243</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Andrea,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's the ironic part, I followed that manual exactly. I even had our Senior Network Engineer take a loot at it and also said "Weird... it should work".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Therefor I have the feeling I'm missing something.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 13:15:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837798#M459243</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2012-02-17T13:15:30Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837799#M459247</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you provide all VPN configuration?&lt;/P&gt;&lt;P&gt;Have you set the default group policy when define the tunnel-group?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel-group XXXXXXX general-attributes&lt;/P&gt;&lt;P&gt; default-group-policy VPNCLIENTS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 13:28:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837799#M459247</guid>
      <dc:creator>andrea.meconi</dc:creator>
      <dc:date>2012-02-17T13:28:59Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837800#M459249</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, thanks for the response, I am currently unable to log onto the ASA. I'll get back to you once I'm able to.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 15:44:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837800#M459249</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2012-02-17T15:44:29Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837801#M459252</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Jesse,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; The config looks fine. When you say it is not working - what exctly the issue? VPN clients unable to access the internal network? Few things you need to check...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. nat 0 access-list for internal network to remote von client subnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. same security traffic permit intra/inter interface allowed. (check the syntax for this command).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Route on internal routers that points the traffic to VPN subnets to ASA inside interface. (default should do as well).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;MS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 15:48:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837801#M459252</guid>
      <dc:creator>mvsheik123</dc:creator>
      <dc:date>2012-02-17T15:48:30Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837802#M459256</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jesse,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andrea advise ( Default-group-policy) should do it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that does not make a difference please post entire configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 18:45:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837802#M459256</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-02-17T18:45:30Z</dc:date>
    </item>
    <item>
      <title>Split Tunnel somehow not working</title>
      <link>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837803#M459258</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry for the long response, I'm at a different client today and not able to provide answers untill tomorrow.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Feb 2012 08:55:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/split-tunnel-somehow-not-working/m-p/1837803#M459258</guid>
      <dc:creator>JesseRely</dc:creator>
      <dc:date>2012-02-20T08:55:04Z</dc:date>
    </item>
  </channel>
</rss>

