cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1247
Views
0
Helpful
5
Replies

VPN split tunneling question???????

Hi All

Can somebody tell me what options I have, before I use ASA Split tunneling .Thanks

I dont want to  use the split tuneeling as last resorce.

thanks

1 Accepted Solution

Accepted Solutions

we could also use a vpn filter to control the traffic flow as per acl's on your ipsec tunnel. that imo is the best way to control the traffic!

View solution in original post

5 Replies 5

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Juan Carlos,

The thing is that as long as you do not use the Split tunneling feature all traffic will be tunneled.

So the options you have are:

1-Tunnel all traffic

2- Tunnel specific traffic (Split tunnel policy)

Regards,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Hi,

In addition to the previous post you could also configure exlude-specified, which allows you to route all traffic thru the tunnel except for specific networks. A pretty common approach of this implementation is called "LOCAL LAN ACCESS".

Please let us know if you have any further questions.

Sent from Cisco Technical Support Android App

we could also use a vpn filter to control the traffic flow as per acl's on your ipsec tunnel. that imo is the best way to control the traffic!

Hi,

I agree with Mikull's post, the VPN filter is a powerful tool, to limit VPN access.

Sent from Cisco Technical Support Android App

Thanks Guys so much for the help......Is weel appriciated