<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Communicating between remote access VPN subnets in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082040#M915670</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no hitcount... are you sure that any previous statement of this ACL doesn't deny the traffic ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is your VPN up ? ipsec or GRE ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 30 Jul 2008 13:59:29 GMT</pubDate>
    <dc:creator>Olivier Jessel</dc:creator>
    <dc:date>2008-07-30T13:59:29Z</dc:date>
    <item>
      <title>Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082037#M915662</link>
      <description>&lt;P&gt;I have two remote vpn subnets that need to communicate.  I have my access list as &lt;/P&gt;&lt;P&gt;access-list No-NAT extended permit ip 172.16.140.0 255.255.255.0 172.18.3.0 255.255.255.0, however this does not seem to do the trick.  Could these VPN's be terminating on different interfaces such as one external, one DMZ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:22:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082037#M915662</guid>
      <dc:creator>jgorman1977</dc:creator>
      <dc:date>2019-03-11T13:22:51Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082038#M915664</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have you also setup an ACL allowing the traffic to this remote subnet 172.18.3.0/24 ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 13:53:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082038#M915664</guid>
      <dc:creator>Olivier Jessel</dc:creator>
      <dc:date>2008-07-30T13:53:04Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082039#M915668</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I do have the ACL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Internal line 40 extended permit ip 172.16.0.0 255.255.0.0 172.18.3.0 255.255.255.128 (hitcnt=0) 0x92cd7baf&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 13:56:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082039#M915668</guid>
      <dc:creator>jgorman1977</dc:creator>
      <dc:date>2008-07-30T13:56:18Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082040#M915670</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no hitcount... are you sure that any previous statement of this ACL doesn't deny the traffic ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is your VPN up ? ipsec or GRE ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 13:59:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082040#M915670</guid>
      <dc:creator>Olivier Jessel</dc:creator>
      <dc:date>2008-07-30T13:59:29Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082041#M915672</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Both are IPSec and both are up. The 172.16.140.0/24 subnet is our VPN client subnet to the ASA and the 172.18.3.0/24 subnet are Cisco 871's terminating to the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 14:08:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082041#M915672</guid>
      <dc:creator>jgorman1977</dc:creator>
      <dc:date>2008-07-30T14:08:03Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082042#M915674</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;if I right understand, both are remote...&lt;/P&gt;&lt;P&gt;Have you configured split-tunneling ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 14:22:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082042#M915674</guid>
      <dc:creator>Olivier Jessel</dc:creator>
      <dc:date>2008-07-30T14:22:32Z</dc:date>
    </item>
    <item>
      <title>Re: Communicating between remote access VPN subnets</title>
      <link>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082043#M915676</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, they are both remote.  I have the following split-tunnel acl:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list Indy-Remote_splitTunnelAcl_1 line 28 extended permit ip 172.18.0.0 255.255.0.0 172.16.140.0 255.255.255.0 (hitcnt=0) 0x5a58ce89&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The main issue is i have users on the 172.18 subnet using IP communicator trying to contact users on the 172.16 subnet also using IP communicator.  They cannot hear each other.  The Call Manager server is located with the ASA, so I wouldn't think there would be enough delay to the packets to cause this issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 Jul 2008 14:32:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/communicating-between-remote-access-vpn-subnets/m-p/1082043#M915676</guid>
      <dc:creator>jgorman1977</dc:creator>
      <dc:date>2008-07-30T14:32:26Z</dc:date>
    </item>
  </channel>
</rss>

