cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
769
Views
5
Helpful
5
Replies

Connect to firewall SSH or ASDM from VPN

Brendan Wood
Level 1
Level 1

Hello,

I've created an AnyConnect VPN which the client is assigned an IP from the IP Pool 10.20.20.0/255.255.255.224.

I've tried to create an entry in the management access tab with the following settings, and it is not working;

Type:ASDM/HTTPS, Interface:Inside, IP Address 10.20.20.0, Mask: 255.255.255.224.

I've also tried setting the interface to outside - no improvement.

Any tips are welcome.

1 Accepted Solution

Accepted Solutions

Hi Brendan,

Please check these three basic things:

1- The internal network of the ASA is included in the split-tunnel ACL (if configured).

2- Make sure you have the following command: management-access inside

3- Make sure that the identity NAT entry for this traffic has the route lookup at the end. *

     ie. nat (inside,outside) source static LAN LAN destination AnyConnect AnyConnect no-proxy-arp route-lookup *

* Assuming that you are running 8.4+

HTH.

Portu.

View solution in original post

5 Replies 5

Julio Carvajal
VIP Alumni
VIP Alumni

Hello,

What version are you running, are you able to ping the inside interface from the anyconnect client?

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Hi Brendan,

Please check these three basic things:

1- The internal network of the ASA is included in the split-tunnel ACL (if configured).

2- Make sure you have the following command: management-access inside

3- Make sure that the identity NAT entry for this traffic has the route lookup at the end. *

     ie. nat (inside,outside) source static LAN LAN destination AnyConnect AnyConnect no-proxy-arp route-lookup *

* Assuming that you are running 8.4+

HTH.

Portu.

Thanks Javier.

Brendan Wood
Level 1
Level 1

It was actually the management-access inside that was not set.  Everything is fine now, thanks.

Great

Keep it up!!

Review Cisco Networking for a $25 gift card