cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
9587
Views
0
Helpful
7
Replies

AnyConnect client not getting default gateway

lcaruso
Level 6
Level 6

Hi,

I've just setup my first AnyConnect remote acccess vpn on a 5505 running 8.4(1). Everything works except I'm not getting a default gateway for my remote access vpn connection.I can't see where in the profile to set that up. Can someone point me to that setting please?

2 Accepted Solutions

Accepted Solutions

as far as I rememeber you won't receive a default gateway on your client. You will get the specific routes to the internal network, this same networks are the ones defined in the access lists for split tunneling. Split tunneling will permit that you can navigate to the internet using your clients internet connection and still be able to comunicate to the networks across the VPN.

Let me know if this answers your question.

View solution in original post

make sure those networks are included in the split tunnel ACLs and make sure the ASA know how to get to those internal networks.

View solution in original post

7 Replies 7

songl
Cisco Employee
Cisco Employee

sorry we haven't gotten our partner status setup yet but will soon

as far as I rememeber you won't receive a default gateway on your client. You will get the specific routes to the internal network, this same networks are the ones defined in the access lists for split tunneling. Split tunneling will permit that you can navigate to the internet using your clients internet connection and still be able to comunicate to the networks across the VPN.

Let me know if this answers your question.

thanks!

then I'm not getting the routes I need

this network has a transit network on the inside, not the client's network which is one hop away

so I can't ssh or ping or get to any internal devices on the client's networks after connecting

where do I setup routes for vpn clients ?

make sure those networks are included in the split tunnel ACLs and make sure the ASA know how to get to those internal networks.

thanks! must be split tunnel acl since ASA knows all about those networks.

Review Cisco Networking for a $25 gift card