cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1516
Views
5
Helpful
6
Replies

Clientless SSL VPN - Can it access other site-to-site VPN networks?

will.cada
Level 1
Level 1

Hello,

We currently have an ASA 5510 at one of our sites with about 3 other site-to-site VPN's connected to it for all our branch offices. I setup the Clientless SSL VPN(WebVPN) and I can access everything on the local network that the ASA is attached to, is there anyway to be able to access the other end of the site-to-site VPN's tunnels through the Clientless SSL VPN?

I have it setup where the SSL VPN(Anyconnect) and the older Cisco IPSec clients can access the other end of the site-to-site tunnels. The only reason I need the configure the Clientless SSL VPN is that we have some remote users that need to access various servers all over our entire network from their home PC.

Any Ideas?

Thank you,

Will Cada

6 Replies 6

jbayuka
Level 5
Level 5

You can access the other end of the site-to-site VPN tunnels through the Clientless SSL VPN. Make sure that all sites have connectivity between each other.

did anyone get his setup working. i did this in a lab and it was not possible to access remote location over vpn tunnel through clientless ssl because of routing. the clientless traffic was not encrypted and sent directly via asa outside interface.

Any luck getting this to work?

auraza
Cisco Employee
Cisco Employee

In your crypto ACLs for the site-to-site tunnels, add the ASA's public IP destined to the remote network, and mirror this ACL on the remote end VPN device.

Example:

ASA public IP: 2.2.2.2

Remote network: 192.168.1.0/24

access-list vpn_to_remote_network permit ip host 2.2.2.2 192.168.1.0 255.255.255.0

Mirror the above acl on the remote end router.

PS. If you found this post helpful, please rate it.

That did the trick...thanks

universe12
Level 1
Level 1

how do u get VPN Connections for ipod Touch using cisco?

Review Cisco Networking for a $25 gift card