03-06-2011 09:39 PM - edited 03-11-2019 01:01 PM
Dear Support-Team,
Below I attached My Scenario what i want to implement.
Totally I had 3 branches Branch-A,Branch-B and Branch-C.
Site to Site VPN has been established successfully between Branch-A to Branch-B and Branch-A to Branch-C.
IP addressing Scheme is: Branch-A ---- 192.168.2.0/24
Branch-B ---- 192.168.1.0/24
Branch-C ---- 192.168.3.0/24
Here my query is i need to allow connectivity between Branch-B and Branch-C through the Branch-A without configuring any VPN between Branch-B and Branch-C.
Thanks in advance...
Regards,
MJR
03-06-2011 09:55 PM
Follow this example :-
Manish
03-06-2011 11:14 PM
Hi,
I have the same topology as you do.
So, to your config.
1) don't forget to mention your Branch-C networks in cryptomap in vpn between A and B (and vice versa to Branch B)
2) put B and C networks in nat0 ACL on Branch-A firewall, where those vpn are connected
3) finally allow incoming and outgoing communication on the same interface : same-security-traffic permit intra-interface
should be working now
HTH
Pavel
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide