07-02-2014 07:47 PM
how to setup cisco ASA site to site VPN and with split tunnel? I am can not find any documents about site to site VPN with split tunnel. anyone can help me?
07-02-2014 10:11 PM
Hi Neko-Chen,
With L2L VPN tunnel , you can use VPN filter in order to restrict user traffic across VPN tunnel .
It provides you more granular restriction for the VPN traffic.
Here is the document for your reference:-
http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/99103-pix-asa-vpn-filter.html
Regards,
Dinesh Moudgil
P.S. Please rate helpful posts.
07-02-2014 10:42 PM
Hi Neko,
Usually in Site to Site VPN, you can have the access enabled whatever you are configuring as the encryption domain and cryto acl.... say site A has lan network of 10.0.0.0/24 & site B has lan network of 172.16.0.0/24.... if you have the crypto ACL's pointing only these networks as the encryption domain in both the ends... it takes the traffic only for these subnets..... All other traffic can get skipped from VPN traffic and it takes a regular path or other VPN path of your ASA....
Regards
Karthik
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide