Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello, The Anyconnect VPN works fine when trying to access any of the internal networks. However, when traffic is sourced from an Internal network towards the VPN client, the connectivity is not successful. This solution is required to deploy some pa...
Hi, in our production environment, RA users connects to network using Anyconnect (Authentication via PKI cert and ISE - AD integrated). Requirement here is for one user, he needs to be assigned the same IP everytime he connects using VPN. We do have ...
Hi,
I am provided with console access to ASA 5510 (v9.0). However, I am not close to the device and hence I am accessing it via Teamviewer. It is a Windows 10 Laptop that is consoled to the firewall.
I am trying to identify on how to upload the...
We have a Cisco ASA 5585-x in multi-context mode in our environment. I did a packet capture in one of the contexts and analysed the same on CLI. However, I would like to export it and view the same on Wireshark but my attempts were not successful. I ...
Hello Pulkit, You are right, the NAT statement was not correct. Originally, it was:nat (inside,any) source static inside_nw inside_nw destination static vpn_pool vpn_pool no-proxy-arp The inside_nw object was not a broader subnet(which I initially as...
Thank you for your reply. 1. NAT Exemption statement already exists2. Static route. It is pointed to the ASA in which the AC is configured. That's the reason it reaches the ASA. However, it exits the ASA via the same Inside interface it entered from ...
Thanks RJI and Rahul.
I will check this when I get to work today.
Hi Rahul,
Assuming I don't have this already set (vpn-addr-assign aaa) and I add it to the config today.
Here, I am more concerned about just this one user, say user1, who shoul...
Hello Micke,
Thank you for your response. Please let me know if I have understood you correctly.
The only way is that I need to configure one of the interfaces of the firewall while I am connected to the console and connect a laptop to that confi...