cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1669
Views
5
Helpful
1
Replies

Allowing OpenVPN through ASA5515X from DMZ to internal

vsemenov
Level 1
Level 1

Hi All,

please assist with the configurations.

Current Setup:

The INTERNAL interface where the OpenVPN server and local LAN clients are connected. 

 

nat (inside,outside_isp1) source static VPN-SERVER-INTERNAL interface service OPENVPN-UDP-1198 OPENVPN-UDP-1198

access-list outside_isp1-acl-in extended permit udp any object VPN-SERVER-INTERNAL object-group OPENVPN-UDP

 

Clients from inside are able to connect to ISP1-PublicIP:1198

 

Now I have to configure a DMZ interface where clients have to be able to connect to the same OpenVPN server as above.

Currently, I'm using the same ISP (outside_isp1) when DMZ clients have to connect to the internet.

What port-forwards/NAT I have to set?

Any help is much appreciated.

 

 

 

 

1 Accepted Solution

Accepted Solutions

balaji.bandi
Hall of Fame
Hall of Fame
1 Reply 1

balaji.bandi
Hall of Fame
Hall of Fame

here is the example guide how to setup for reference :

 

https://www.supinfo.com/articles/single/183-setup-openvpn-server-tap-behind-an-asa

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card