09-26-2010 07:07 AM
hi friends,
i ll explain my setup,
i have one asa in datacenter having static ip and then site office also having static ip these two sites are connected using VPN and i configured remote client in the datacenter.
the remote client workers needs to access the site office network . this is my setup.
the problem i am facing is that remote workers they can't able to access site office network.but if i try to ping the vpn pool ip from site office and then if i try
from remote client i can able to access siteoffice from remote client.
please provide me the solution experts
Solved! Go to Solution.
09-26-2010 05:19 PM
I understand that you have the following topology:
1) Lan-to-Lan VPN between Data Center and Site office
2) VPN Client connecting to Data Center, and would also like access to the Site office.
There are a few things that need to be configured for VPN Client to access the Site office:
On the Data Center ASA:
- "same-security-traffic permit intra-interface" command
- Split tunnel ACL needs to include site office LAN
- Crypto ACL for the LAN-to-LAN VPN should include the following:
access-list
On the Site office ASA:
- Crypto ACL for the LAN-to-LAN VPN should include the following:
access-list
- NAT exemption should include:
access-list
Hope that helps.
09-26-2010 05:19 PM
I understand that you have the following topology:
1) Lan-to-Lan VPN between Data Center and Site office
2) VPN Client connecting to Data Center, and would also like access to the Site office.
There are a few things that need to be configured for VPN Client to access the Site office:
On the Data Center ASA:
- "same-security-traffic permit intra-interface" command
- Split tunnel ACL needs to include site office LAN
- Crypto ACL for the LAN-to-LAN VPN should include the following:
access-list
On the Site office ASA:
- Crypto ACL for the LAN-to-LAN VPN should include the following:
access-list
- NAT exemption should include:
access-list
Hope that helps.
09-27-2010 02:17 PM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: