I have an issue whereby we are unable to access any hosts in the DMZ (192.168.22.0/24) when using the SSL Anyconnect VPN client. I suspect an ACL issue somewhere?
on the ASA I found this setting:
--->Remote Access VPN
--->Network Client Access
For each Group we have---> Manage IPV4 filter
This is where I see Std ACL with some entries
Can anyone advise if I just add the DMZ (192.168.22.0/24) Subnet to the Split_Tunnel Std ACL?
There is not much point in adding 192.168.22.0/24 to the split tunnel ACL because it is already included in 192.168.0.0/16. It might be helpful to add 192.168.22.0 to the VPN_Routes ACL. Can you tell us what is 188.8.131.52/24 that is currently specified in that ACL?
Can you verify that devices in the DMZ have a route to the address pool for VPN?