cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
362
Views
0
Helpful
2
Replies

Vpn access on ASA 5520 on 2 different interfaces ?

Eric Daoust
Level 1
Level 1

Can i enable VPN (anyconnect) access on 2 separate interfaces ? using the same anyconnect profile and address pool?

 

I have my outside vpn access working fine, but now would like the users on a guest interface to be able to "VPN" into my prod network if needed. can i simply just enable vpn access on that interface(guest)?

 

thanks

2 Replies 2

johnd2310
Level 8
Level 8

Yes, you should be able to enable vpn on the Outside and the Guest Interface and use the same profles. However, it is a good idea to have separate profiles and address pools so that you can better control where guests go.

 

Thanks

John

**Please rate posts you find helpful**

I have configured VPN on two interfaces of an ASA and it works fine. John does make an interesting point that from a policy perspective that you might want to treat traffic differently if it comes from a guest interface. But in terms of the original question, yes it works to enable VPN on two interfaces of the same ASA.

 

HTH

 

Rick

HTH

Rick