Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Well not to offend anyone but I would go with the idea of configuring static routes on Server itself rather than VPN ASA. Configuring a static route on VPN ASA moves packet on the same broadcast domain more than required and this might create a probl...
Well I think this is not going to work. You can't have two tunnels with same destination range. You need to ask a new one to NAT at their end so that you can define different destination range in your box.
Ok mate. It is quite clear now. If you just wanted to verify configuration then I can say that seems ok. You might need to run debug on ipsec and isakmp and see what is going on when traffic is originating. I would also like you to verify following:1...
Well I am assuming that you are not able to access your web server when you enter 20.20.20.20 on your machine from inside network (LAN).Here are a few points to consider then:1. Following access list is not correct:access-list INSIDE TO DMZ extended ...