cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
476
Views
0
Helpful
5
Replies

Use client VPN tunnel to traverse LAN-to-LAN tunnel

baskervi
Level 1
Level 1

I've been troubleshooting a problem and can't get over a hurdle. The ASA is running ASA running 7.2(1)24 code. I'm trying to use a client VPN tunnel to connect to the ASA. The ASA already has a LAN-to-LAN tunnel set up and functioning, and I need the client VPN to access the remote site over the LAN-to-LAN tunnel.

The internal IP address of the local side is 192.168.0.0/24 and the IP of the remote LAN-to-LAN tunnel is 172.20.1.0/24. The clients are handed out 192.168.200.0/24 IPs. I've attached the relevant configuration for the ASA.

When the client VPNs into the network, I can access the resources on the ASA's internal network. Users on the ASA's internal network can access resources across the LAN-to-LAN tunnel. Client VPNs cannot access resources over the LAN-to-LAN tunnel. For the latter, there are no hits on the C-TEST access list.

Thank you for your assistance.

1 Accepted Solution

Accepted Solutions
5 Replies 5

acomiskey
Level 10
Level 10

We have the exact same issue however we are running pix 6.3(5). Is there a command in this release to do the same?

Unfortunately no.

This solved the problem. By the way, where do you go to mark this as the solution?

It's already marked, I guess you figured it out. Glad it helped.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: