cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
513
Views
0
Helpful
1
Replies

Client VPN to access remote networks via ASA L2L connections

tngceo
Beginner
Beginner

I have an ASA 5520 with Cisco 5.X VPN clients. The ASA also has a number of permanent IPSEC L2L connections to other offices. I need the client VPN users to be able to access the remote networks via the ASA.

I added the remote networks to the split tunnels list for the client VPN policy, And I now see the networks in the client route list. But the clients cannot pass traffic to/from the remote networks. Do I also need to create outside to outside NAT Exemption rules? It's a little confusing to me, since the clients are getting an inside virtual IP from the assigned pool.

1 Reply 1

Michael Muenz
Contributor
Contributor

Yes, you need a NAT exemption. You can turn on debugging on the ASA and should get Asymetric NAT errors.

Michael

Please rate all helpful posts

Michael Please rate all helpful posts
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers