cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
638
Views
0
Helpful
2
Replies

VPN with Internet

zyousoufzai1
Level 1
Level 1

Dear all,

please if some one know about how enable the internet whenever we want to connect to by VPN clinet not by enabling the split-tunnel i want to have everything be possible by VPN conection of Corproate network, such internet and local.

i have two ASA5520 one is for VPN only next one is for outside internet,

please i'm waiting for you repsond ASAP.

thanks

zubair

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

Yes, you can configure tunnel default gateway so that all VPN traffic after being decrypted on the ASA gets routed to a particular hop.

route inside 0.0.0.0 0.0.0.0 tunneled

So if your ASA inside interface that terminates the VPN is in the same subnet as the ASA inside interface that provides the Internet access, then the next-hop ip address on above route would be the ASA inside interface that provides the Internet access.

The ASA that provides the internet access also needs to be configured with route for tohe VPN Client pool subnet so that it gets routed to the ASA that terminates the VPN.

Hope that helps.

View solution in original post

2 Replies 2

Jennifer Halim
Cisco Employee
Cisco Employee

Yes, you can configure tunnel default gateway so that all VPN traffic after being decrypted on the ASA gets routed to a particular hop.

route inside 0.0.0.0 0.0.0.0 tunneled

So if your ASA inside interface that terminates the VPN is in the same subnet as the ASA inside interface that provides the Internet access, then the next-hop ip address on above route would be the ASA inside interface that provides the Internet access.

The ASA that provides the internet access also needs to be configured with route for tohe VPN Client pool subnet so that it gets routed to the ASA that terminates the VPN.

Hope that helps.

thanks thanks thanks alot it's really working fine

gread day a head!!!

zubair