cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
946
Views
0
Helpful
3
Replies

VPN Traffic routing via Site to Site VPN.. is it possible?

Mohamed Hamid
Level 1
Level 1

Hi there

I have a AnyConnect VPN that terminates to an ASA on port Gi0/1.. 

On the same ASA I have a Site to Site VPN from port Gi0/1 (same port) to another firewall.

 

Can I route AnyConnect VPN traffic via the Site to Site vpn?

 

Regards

 

Mohamed 

3 Replies 3

Collin Clark
VIP Alumni
VIP Alumni

Yes. You need to add the AnyConnect Pool to the interesting traffic ACL and the TwiceNat rule.

Hope it helps.

Hi Collin

 

Thanks for your reply 

 

When you say TwiceNat rule are you referring to the NAT-T in Crypto Map Entry on the site to site..

 

I have enabled this but when interesting traffic is generated it does not entry the SIte to Site VPN...

 

 

By TwiceNAT I mean the old NAT0, traffic that should not be NAT'd. Can you post your config?