cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
415
Views
0
Helpful
3
Replies

remote vpn client can not access back end subnet

zhiqiang.yan
Level 1
Level 1

I am working on a testing for our new vpn device. There is one cisco 6509 with SPA, running vrf mode. one cisco 3750 running two vrfs is connecting to it, and emulate two back end network. Two remote routers (cisco 1811) is successfully connected to their own vrf, and is able to access backend subnet behind 6509. I connect my laptop and run cisco vpn client, vpn is up , from my laptop is able to access the subnet that between 6509 and 3750, but not the loopback ip on 3750 vrf which emulating the back end subnet.

Does anyone know what is my problem is?

3 Replies 3

zhiqiang.yan
Level 1
Level 1

configuration of 6509-SPA

singhsaju
Level 4
Level 4

This is a routing issue .You need to redistribute VPN pool network in the VRF routing table or you need a static route for VPN pool network on 3750 for the VRF pointing back to 6509.

HTH

Saju

Pls rate helpful posts.

But, there is a default route on that vrf on 3750.

ip route vrf cus01 0.0.0.0 0.0.0.0 192.168.2.1

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: