cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
210
Views
0
Helpful
1
Replies

Remote VPN access

biplobkhan
Level 1
Level 1

Hi

I am confusing , pls need assistance. I have 5520 ASA. This Firewall is connected internet and inside users browse net via nat enable.now my authority want some of remote user access the LAN via VPN client connection. I configure Remote VPN. Its ok.

------------------------

outside:203.202.147.31 255.255.255.224

inside: 10.234.100.2 255.255.255.0

------------For connect net I do---

access-list 102 permit Ip any any

access-list 102 permit TCP any any

access-group 102 in interface outside

nat (inside) 1 0 0

* in this config clint can connect net

----------- For access Remote VPN---

IP local pool VPNpool 10.234.100.41-50

access-list 105 permit IP any 10.234.100.40 255.255.255.248

nat (inside) 0 access-list 105

------------------------

for Remote VPN access i need to configure no nat ?

but in Remote VPN document no mention any nat

thanks

biplob

1 Reply 1

guibarati
Level 4
Level 4

Hi, there besides all the other things, yes, you have to configure nat 0 or "no nat" so the internal hosts are not nated when returning traffic to the vpn client

Review Cisco Networking products for a $25 gift card