cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
198
Views
0
Helpful
1
Replies

SSL VPN access on the OUTSIDE

S891
Level 2
Level 2

Hi,

I have to setup SSL and ANyconnect VPN configured on my Internet Perimeter ASA OUTSIDE interface. Both VPN will be setup to use the OUTSIDE interface. I do not expect to see any issue with that. However, if any of my INSIDE users wants to access these VPNs it would be a problem due to ASA access restriction on the remote interface (Inside interface being local to users comig from internla network). 

Is there a workaround for this as I am guessing some users might need the access from internal network? 

1 Reply 1

Rahul Govindan
VIP Alumni
VIP Alumni

You can set up your internal DNS server to point your fqdn as the inside interface ip address. So internal users can hit VPN that way and external users will obviously get the external ip address for the same fqdn. vpn just needs to be enabled on the inside interface along with outside.