02-07-2013 03:30 AM
Dear Cisco community,
I would hereby like to inform if it is possible to configure the Cisco ASA5505 firewall to route internet via an external VPN, while a laptop and smartphone connect to the firewall via Cisco AnyConnect VPN.
The configuration would result into: Laptop on public internet -> Cisco ASA5505 VPN -> External VPN (Unix server) -> internet.
Is this configuration possible?
Best Regards,
Jan
02-07-2013 04:01 AM
Hi,
Are you talking about a following kind of situation
Can you confirm if the situation is the above?
Could you also tell us your ASAs software level?
- Jouni
02-07-2013 04:11 AM
Dear Jouni,
Thank you for the fast reply! The described situation seems to be correct, aldough I am not familiar with the term L2L VPN.
The Cisco ASA5505 needs to connect to an external VPN (OpenVPN on a Unix server) from which the public internet will be available.
Is this possible with a default ASA5505?
Regarding the software level I am unsure. I've purchased it 1 year ago via an internet store. It is a new version, I previously purchased a ASA5505 with an old software version and was able to return it for a new model. I remember that the version extension is K9.
Best Regards,
Jan
02-07-2013 04:42 AM
Hi,
Basically L2L VPN means and encrypted connection between 2 LAN networks/sites/offices/etc (Lan to Lan VPN)
Its configured between 2 VPN devices and doesnt require separate "log in" from the users. The VPN Connection is activated when there is traffic that needs to use the L2L VPN connection.
What is the purpose of building such a setup? Why would you not forward the VPN Client traffic to Internet straight from the ASA5505? Do notice that with this kind of setup theres even more bandwith used on your ASA5505 local Internet connection.
If you use the graphical user interface known as ASDM you should be able to see the software version on the main page after youve opened the software.
On the command line interface (CLI) side you can show the version and license information with "show version" command.
- Jouni
02-07-2013 04:55 AM
Dear Jouni,
Thanks a lot for the help!
The motivations are:
Are these motivations wrong? And will a server to server VPN cause a large loss of bandwith (and do you perhaps know how much would be lost by the functioning of the firewall alone?)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide