07-05-2023 11:41 PM
Hi all,
I have set up the AnyConnect VPN in FMC and allowed all traffic over the tunnel.
I can access any internal network but the VPN client get not connect to Google.com or Cisco.com etc.
When I try to nslookup, the VPN can resolve the IP address
But can not ping the IP address
I am not sure if is it the NAT issue, but I try the different settings are still the same issues.
Thanks
Solved! Go to Solution.
07-06-2023 01:23 AM
07-05-2023 11:52 PM
@chocolate2395777 you need an Auto NAT rule (in addition to the rule above) to allow the RAVPN traffic to hairpin. With the src and dst interfaces are the "outside" interface, the src network is an object that represents the RAVPN pool and traffic is translated behind the outside interface.
07-06-2023 01:23 AM
you need NATing U-turn
OUTside,OUTside
check above
07-06-2023 02:59 AM
Thanks so much,
It works, I never thought that need to U-turn.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: