Remote Access VPN ACLs and Routing

Unanswered Question
Oct 24th, 2007
User Badges:


I have successfully configure Remote access VPN and I am limiting the resources users can access using VPN ACLs on the group ploicies i.e.

"vpn-filter value REMOTEAC-ACL"

The firewall is connected to a core switch which does InterVlan routing and all the network subnets are defined on it.

My problem is as follows, RA users cannot access subnets that are not defined on the core switch even though I have allowed it in the REMOTEAC-ACL access-list. so long as the ip in the acl is not defined on the core switch then the IP cannot be access from the VPN pool.

What could be missing in the firewall config?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
acomiskey Wed, 10/24/2007 - 05:28
User Badges:
  • Green, 3000 points or more

Do the networks you cannot reach have a route to the vpn client subnet?


This Discussion