09-30-2007 08:12 AM - edited 02-21-2020 03:17 PM
Hello,
I have a user that VPN's in and everything works fine. The only thing that does not is another email account he has in outlook. HE can not recieve and send mail from that account. Is there a way to allow this when he VPN's in?
vpngroup xxx address-pool ippool
vpngroup xxx dns-server ggmain ernie
vpngroup xxx default-domain gg.corp
vpngroup xxx split-dns earthlink.net
vpngroup xxx idle-time 1800
vpngroup xxx password ********
as you can see he is using earthlink, not sure if adding the split-dns will work like that?
isakmp nat-traversal 20 is in the show run as well
Thanks in advance!
09-30-2007 10:50 AM
You need to set up split tunneling.
09-30-2007 11:16 AM
I want to add this then?
access-list split permit ip 10.1.1.0 255.255.0.0 192.168.16.0 255.255.255.0
And this?
vpngroup xxx split-tunnel split
I tried and it wont let me? Please help.
09-30-2007 11:53 AM
Ok I was able to add
vpngroup xxx split-tunnel split
access-list split permit ip 10.1.1.0 255.255.0.0 192.168.16.0 255.255.255.0
except now I have no access to my internal network :(
10-01-2007 05:49 AM
I don't know what any of your networks are...
The above statement would work if 10.1.1.0 is your inside network and 192.168.16.0 is your vpn client network. It needs to be reversed if this is not true. Or just do this...
access-list split permit ip
10-01-2007 07:11 AM
Thanks I got it working!!
10-22-2007 11:08 AM
What did you do to make it work? Can you post a sample config?
10-22-2007 11:53 AM
I did a split tunnel as stated
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: