cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
294
Views
0
Helpful
1
Replies

Internet browsing through RA VPN

anva12345
Level 1
Level 1

Hi All

    I want to configure Remote access VPN for users on ASA and once VPN is established these users should browse the internet from the HQ(server side) and not through the local internet at client side(as in the case of split-tunnel).Is this type of configuration possible?

Regards

Anvar

1 Reply 1

james.bastnagel
Level 1
Level 1

Yes.

In the case of a site to site tunnel, in your network lists/ACL's for the

tunnel you would have at the remote site something like:

access-list VPN extended permit ip (remote site local network addresses)

0.0.0.0 0.0.0.0

Then the opposite at your HQ location. This will force all traffic through

the vpn from that remote site.

In the case of RA vpn's using the IPSEC or SSL client, simply do not define

a list of networks in the configuration and it should, by default, tunnel

all traffic. There is some additional information on this and similar common

vpn issues at the link below.

http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml

On Sun, Jan 24, 2010 at 8:15 AM, anva12345 <

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: