cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
437
Views
0
Helpful
3
Replies

Split tunnel - routes appear with wrong gateway

spfister336
Level 2
Level 2

I've got a new VPN setup on a pair of ASA 5520s. I've got split tunneling set up, but whenever I connect, the routes that appear in the routing table seem to have the wrong default gateway. The addresses assigned are in the subnet 10.99.16.0/21. The default gateway is actually 10.99.20.1, but the routes have it as 10.99.16.1, which doesn't exist. How can I fix this?

3 Replies 3

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi,

There is no way you can push or configure a default-gateway on clients.

Anyconnect will show the first ip address of the subnet as the default gateway which in your case is 10.99.16.1 .

However this is not going to cause any issue with the communication. That's the way it works.

Regards,

Aditya

Please rate helpful posts and mark correct answers.

OK, but VPN users can only get to things on the same subnet. Is there something I'm missing?

Hi,

You may be missing the NAT on the ASA for the VPN traffic.

Also in the split tunnel access-list you should allow the subnet you want to access through the Anyconnect client.

Regards,

Aditya

Please rate helpful posts and mark correct answers.