LAN has 2 firewall.VPN client issue

Unanswered Question
Nov 13th, 2007
User Badges:

Lan=192.168.2.0/24

Checkpoint 192.168.2.1 and this is default GW for LAN

ASA=192.168.2.125 - This is configured for Cisco VPN client (Future it may be site to site VPN)

LAN---------Checkpoint------Router1-------ISP1

----------ASA---------------Router2-------ISP2

Cisco client IP pool is 10.1.10.0/24

Check point is configured to redirect any traffic for 10.1.10.0/24 to ASA

Once the VPN client is establish Client cannot pint internal address where as internal can ping client IP.

If i change LAN PCs GW to ASA every thing is OK

That means it only work one way...where do u think i made a mistake ?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
irisrios Mon, 11/19/2007 - 10:45
User Badges:
  • Silver, 250 points or more

Once the VPN is established all traffic will be routed through the VPN tunnel . Client might have a different ip address for VPN tunnel. So only ASA to which the VPN tunnel is established will be reachable.

Actions

This Discussion