Hi Michael,This does not appear to be related to nat, looks like an IPSec issue.Can you provide a santized crypto configuration from each side of the tunnel, please include the show output for the crypto access-list as well.Thanks,Loren
Hi David,Looking over the router configuration it seems as thought you applied the crypto map to the wrong interface.interface FastEthernet0/0 ip address 1.1.1.2 255.255.255.0speed autohalf-duplex!interface FastEthernet0/1ip address 10.10.10.2 255.25...
Hi Tim,There should be no problem as the encrypted traffic would be from the internal host/subnet to the public IP, the IPSec tunnel is built between the public ip addresses.Thanks,Loren
Hi Tim,Since the ASA will proxy the clientless connection to the remote server it will route the packet sourcing from the appropriate interface. In this case the remote server is available via the outside interface. You would need to include the outs...
Hi Antonio,The example for Easy VPN VTI also applies to the VPN Client as it is a EasyVPN client.Here is some additional information regarding DVTI (Dynamic Virtual Tunnel Interfaces):15.1M&T - IPsec Virtual Tunnel Interfacehttp://www.cisco.com/en/US...