cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
328
Views
0
Helpful
2
Replies

ezvpn + split tunneling -> broken nat

Maxim Zimovets
Level 1
Level 1

Hello, all!

I set up ezvpn connection between pix (fos 7.0(6)) and cisco 831 (ios 12.4(18a)). Client is in network extension mode. PC behind 831 can access head office without problems. It's OK.

Than I needed to access from remote office Internet and I set up split tunneling. With it I encrypt only tunnel specified networks. At the same time I discovered that c831 began to create NAT rules which were not compatible with my wishes. How can I switch this irritating thing off? Is it possible or not?

With best regards,

Maxim

2 Replies 2

owillins
Level 6
Level 6

Use this Cisco 800 Series Routers Troubleshoot and Alerts guide for your ezvpn + split tunneling issues.

http://www.cisco.com/en/US/products/hw/routers/ps380/tsd_products_support_troubleshoot_and_alerts.html

whjvdam1
Level 1
Level 1

Did you enable NEM on the pix? The default for NEM is off.

You can enable it with:

hostname(config)# group-policy FirstGroup attributes

hostname(config-group-policy)# nem enable

Regards,

Wouter