We have an ASA 5510 as an EasyVPN-Server and several IOS Routers using EasyVPN Client-Mode to access the inside networks. Normaly we use a seperate ISDN dialer access to the client routers for management. Now I run into the problem that there is a router with no isdn. So I have to access the router through the VPN tunnel to monitor and manage it.
I read in the documentation of EasyVPN that i should be able to access the assigned ip-address on the loopback interface. But when I try this I can see that the package count on the ASA increments, but there are no packages received by the router.
There are no access-lists in the way to prevent any traffic like this. It just seems to get into the tunnel on the server side and lost on its way to the client side. Any ideas ?
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...