We have a router-ASA internet VPN. ASA is on central site, router is on remote site. We have a ACS server at central site behind the ASA, now we need the remote router to do AAA with the ACS server when someone logon to it. I added the config on ACS and router, but the problem is remote site router can not reach the ACS server unless the source ip is LAN ip. Anyone know if we can set the source ip to LAN ip for AAA reqeust packet on the router?