06-28-2011 07:01 AM
Hi,
I would like to know, if it's possible to have this configuration with an ASA5510 :
(1)- Remote access VPN (access by the outside interface)
(2)- Site to site VPN (same access interface)
The objective : the vpn users (1) can access to the distant server on vpn (2), and vice versa.
It's possible ? and what's the best practice to do ?
Thanks a lot !
J.
Solved! Go to Solution.
06-28-2011 07:20 AM
Yes , you can do this.
Thesame-security-traffic command permits traffic to enter and exit the same interface when used with the
intra-interfacekeyword, which enables spoke-to-spoke VPN support.
Here are some examples @
http://www.cisco.com/en/US/products/ps6120/prod_configuration_examples_list.html
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00807f9a89.shtml
PIX/ASA 7.X : Add a New Tunnel or Remote Access to an Existing L2L VPN
PIX/ASA 7.x Enhanced Spoke-to-Client VPN with TACACS+ Authentication Configuration Example
06-28-2011 07:20 AM
Yes , you can do this.
Thesame-security-traffic command permits traffic to enter and exit the same interface when used with the
intra-interfacekeyword, which enables spoke-to-spoke VPN support.
Here are some examples @
http://www.cisco.com/en/US/products/ps6120/prod_configuration_examples_list.html
http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00807f9a89.shtml
PIX/ASA 7.X : Add a New Tunnel or Remote Access to an Existing L2L VPN
PIX/ASA 7.x Enhanced Spoke-to-Client VPN with TACACS+ Authentication Configuration Example
06-29-2011 02:22 AM
Great, tks a lot !
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide