12-08-2020 01:23 AM - edited 12-08-2020 01:36 AM
Dear Team ,
I have one requirement that once any-connect client will be connected - it should communicate with another any connect connected client will run specific application .
SO how can we achieve this requirement
We have configured any connect in FTD and ASA as well .
FTD 6.4.0.4
FMC 6.4.0.7
FTD 2110 FMC in VM
Please let us know if anyone can help me .
Regards,
Harmesh Yadav
12-08-2020 01:33 AM - edited 12-08-2020 01:36 AM
You'd need the command same-security-traffic permit intra-interface configured on the ASA, you don't need to configure it on the FTD as it is configured as default. You'll also need to ensure you have a NAT exemption rule to/from the RAVPN network to ensure the traffic is not unintentially natted.
HTH
12-08-2020 01:38 AM
Ok so its possible right - i need to check nat part - if nating is configured I need to create no nat rule right ?
12-08-2020 02:05 AM
Yes, source and destination interface of the nat rule will be the nameif of the outside interface.
12-08-2020 03:19 AM
Actually i am getting problem , in FTD PBR is already configured and traffic is forcefully going to inside interface
and The other thing is remote access Subnet is belog from LAN subnet so i am not getting proper output .
Please give some input
02-03-2021 12:57 AM - edited 02-03-2021 12:58 AM
Now its working some routing and policy based routing configuration done .because there are multiple subnet in network.
resolved by Cisco TAC
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide