Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I understand how to seperate VPN clients to specifc tunnel groups and to a specfic VLAN on the inside, but if I have multiple groups and VLAN's with overlapping routes that point to seperate FW's, can I avoid the use of internal facing routes (since ...
Where do you have your crypto connect statement? I am assuming you are using a VPN services module on the 6509. If this is correct, you need the bump in the wire to put the VPNSM in the data path. The VLAN that is directly connected to the outside...