Hi Rohit,The same url can be used with the Anyconnect client also. If you type in https://<ASA fqdn/ip address>/Anyconnect in the 'Connect To' field in the client, it will connect to that CP.
Interesting. So traffic flows both ways after tunnel is established from the other end?Can you check the cef route for this source and destination:show ip cef exact-route 192.168.2.100 192.168.10.30One suggestion i have is to create 2 new ACL's like ...
Hi Rohit,Yes, you can do this. The way to go about this is group-url's. You can configure a group-url on any connection profile and if the user goes to that specific url, he/she falls into that connection profile automatically. Say you configure a co...
This is because when you have a dynamic nat in place for internet, VPN return traffic from LAN to VPN pool will also hit this unless exempted in an identity NAT or NAT exempt like you created above.
In your case, the dynamic nat is :
object network...
Your crypto map looks to be configured to initiate and respond, so no problems there. For IKE to trigger, there needs to be interesting traffic that hits the interface that has the crypto map applied [GigabitEthernet0/1 in your case]. One possible re...