cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5997
Views
15
Helpful
2
Replies

Anyconncet change default gateway

Hello all

 

I have tried to search both these forums and the web in order to find an answer, to a simple question.

I have a costumer, who wants to use Anyconnect, and not use split tunneling. This is done to control all traffic.

They have another gateway they want VPN clients to use that does not reside on the ASA, It's another firewall lets say it is called 192.168.1.2, and the ASA has 192.168.1.1 as an inside IP addr.

 

In short they want to achive the following:

Log on with VPN through the ASA, and then route traffic out through another gateway.

 

Is this possible, I can't seem to find anywhere to change the default gateway settings for VPN clients in ASA?

Regards,

Johan

 

1 Accepted Solution

Accepted Solutions

Rahul Govindan
VIP Alumni
VIP Alumni
Use the tunneled default gateway feature on the ASA. If you want to use a default gateway just for VPN users, the route would look something like this:
route inside 0.0.0.0 0.0.0.0 x.x.x.x tunneled
Example given here:
https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/112182-ssl-tdg-config-example-00.html

View solution in original post

2 Replies 2

Rahul Govindan
VIP Alumni
VIP Alumni
Use the tunneled default gateway feature on the ASA. If you want to use a default gateway just for VPN users, the route would look something like this:
route inside 0.0.0.0 0.0.0.0 x.x.x.x tunneled
Example given here:
https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/112182-ssl-tdg-config-example-00.html

Thank you, this seems to be what I was looking for!