I have EzVPN setup on remote sites with Network Extension mode configured on Cisco 891w to access the Main office and that is working just fine. However, my users sitting at the 3 remote offices cannot reach the Internet with this setup.
I tried configuring Split Tunnel with no success. When I configured Split-Tunneling, the DHCP Servers in the main office were no longer assigning IP addresses to my remote office phones so I removed the split tunneling. Split Tunneling is still a viable option if I can get it to work with every other service I am running.
I decided to try to give them Internet access through the EzVPN tunnel by using the Internet Access at the head office. I configured an ACL that permits those remote subnets to access the Internet and then configured the overload interface for the NAT outside. Not sure what I am missing here.
The main office uses various Subnets in the 10.0.0.0/16 IP space and my remote offices are using 10.7.x.x/24 Subnets.
My remote users use Cisco 891w and my main Campus uses a Cisco CSR.
Thanks for any help you can provide