cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
687
Views
0
Helpful
2
Replies

anyconnect vpn connection from local lan to outside interface

karblane1
Level 1
Level 1

Hey!

I am using ASA5520 8.4 and trying to make vpn connection from unsecure lan (which is behind asa) to my asa's outside ip but i'm

getting TCP reset from application.

vpn connection from outside networks to outside ip is working, also vpn from unsecure lan to the same lan gw is working.

Is it possible to configure my asa so, that anyconnect vpn connection is possible from anywhere using my outside ip as connection point?

2 Replies 2

Collin Clark
VIP Alumni
VIP Alumni

I have not tried that, but here is a link that should help.

http://www.cisco.com/en/US/partner/products/ps6120/products_configuration_example09186a00807fc191.shtml

Note that I think you should pay attention to the last configuration example with same-security and the NAT rule.

Hope it helps.

well, outside interface has security level 0 and others are not 0, they are 10-30. Anyhow, traffic is allowed between interfaces with the same security level.

I tried a nat rule - comeing from inside unsecure lan a and dest is external ip, nat the destination to unsecure lan a gw,

but still no luck. SYN timeout