02-16-2011 01:12 AM
Hi,
i have a little problem. I can successful creat a vpn connection to a branch office.
The Client got an IP from this range 192.168.123.0 /24 and can connect to the inside network 192.168.100.0 /24 . This works fine. In the ASA (8.3) is a Site to Site tunnel to another branch office with the IP range 10.10.22.0 /24. The inside network (192.168.100.0 /24) can successfuly make a connection to this network. But if i connect with VPN and try than connect from the VPN pool (192.168.123.0 /24) to the site to site tunnel network (10.10.22.0 /24) this doesn`t work.
I have configured a NAt exemption for the vpn pool:
nat (inside,outside) 7 source static obj-vpnpool obj-vpnpool destination static obj-site-to-site-network obj-site-to-site-network
What do i wrong?
Thanks and regards
Jason
Solved! Go to Solution.
02-22-2011 01:44 AM
OK, that is good then.
Pls kindly check the router end.
02-22-2011 03:19 AM
i will check out the router config asap.
Bute the debug message says there is no matching crypto map or could this also be a problem from the router end ?
02-22-2011 06:15 AM
Hey Jen,
it worked now. The admin on the other side forgot to add the crypto entrys for the other network. I`ve started a webex session, add the subnet and whoop it works.
Thanks for your help.
02-22-2011 01:48 PM
Great to hear...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide