cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
24097
Views
0
Helpful
18
Replies

AnyConnect VPN full tunnel with internet access

Jan#
Level 1
Level 1

Currently I am using an AnyConnect VPN (split tunnel) for remote access.

This works great.

However I would like to change this VPN to full tunnel mode.

I already tried configuring it without any problem, it's also working, except one thing, to have internet access while having a full tunnel AnyConnect session.


I was expecting the internet traffic to be routed over the tunnel, and go out on the remote side to the internet, but this requires additional configuration.

Does anybody know how to configure an internet breakout using AnyConnect full tunnel mode?

18 Replies 18

Hi Naman,

Thanks for your input, I tried readding the virtual-template under the webvpn context, however, no difference.

Basically both the virtual-template as well as the virtual-access stay down while a user is connected.

Best regards,

Jan

mulatif
Cisco Employee
Cisco Employee

Hi Jan,

If you feel comfortable then you can post your config here (?) and I can take a look Or You can open a TAC case and continue from there.

Thanks,

Naman

Check the default gateway assigned to clients when full tunnel is used.
Is the one correct one ?
If not (other than .1) check this out

https://supportforums.cisco.com/discussion/10780776/how-can-i-specify-default-gateway-anyconnect-users-local-ip-pool
 

GlobaTex.Inc
Level 1
Level 1

Solved!

"webvpn sslvpn-vif nat inside" in global configuration!