I have 2 ASAs, and connected between them with ipsec VPN.
one of ASA has SSLVPN for users to access its intranet resources.
but don't know how to access inside network on another ASA
my network architecture is below:
192.168.1.0/24 ---- ASA1 --- Internet --- ASA2 ---- 172.24.0.0/16
SSLVPN use 192.168.55.0/24 ip on outside interface
IPSec L2L VPN is established between ASA1 and ASA2
192.168.1.x could access 172.24.0.0/16 via NATing to ASA2's inside interface ip
But now I want 192.168.55.0/24 access 172.24.0.0/16, do some configure but not work...
Is there any suggestion?
Thanks a lot
hi the split tunnel you add for the ASA2 network should allow the vpn clients to send traffic through tunnel when they want to reach the remote subnet.
Can you add this too
access-list nonat_outside permit ip
nat( outside) 0 access-list nonat_outside
Also in the config you have not added the crypto acl entry for ASA1. that is from 192.168.55.0 to 172.24.0.0
See if that helps