03-22-2013 04:49 AM - edited 03-11-2019 06:18 PM
Hi All,
i have created a remote access vpn with local range 192.168.111.1-192.168.111.255
Can we now create site to site vpn with interaseting traafic as 192.168.111.1-192.168.111.255 as local with far end.(10.10.x.x )
one side had asa 8.2 and other side had asa 8.4.
Regards,
Prashant
03-22-2013 04:55 AM
Hi,
Do you mean that you have
If so, then I see no problem with it.
You will naturally require NAT configurations and define the interesting traffic
You will also need to make sure you have "same-security-traffic permit intra-interface" on the firewall with the VPN Client and L2L VPN configuration. This would enable the traffic to enter and leave the same interface which in this case is probably "outside" or something similiar
- Jouni
03-22-2013 06:18 AM
Thank you
The config i was missing was
same-security-traffic permit intra-interface"
It worked
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide