cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
367
Views
0
Helpful
3
Replies

Remote Access VPN: Connecting but cannot access inside network

edwardwaithaka
Level 1
Level 1

Hello,

I have successfully created a remote access vpn on ASA5520. The Cisco Client software connects to remote ASA box and assigns the PC an IP address but I cannot access the Insode network once connected. I have enabled "sysopt connection permit-vpn" to permit VPN traffic and created an accesslist to permit traffic 2 inside network but nothing happens.

What am I missing out?

3 Replies 3

acomiskey
Level 10
Level 10

Could you post a clean config?

Do you have crypto isakmp nat-traversal?

ggilbert
Cisco Employee
Cisco Employee

Edward,

Can you make sure you have NAT exemption configured on the ASA for the network.

Send the outputs of

sh run | in nat

sh run | in ip local

sh vpn-sessiondb remote

Thanks

Gilbert

yiyan
Level 1
Level 1

Hey,I think u should check these UDP port:500,4500,10000,10001.

I met the same issue last time and at last I find the UDP port 10000 is not allowed in my firewall,and then the problem is fixed.