cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
452
Views
0
Helpful
2
Replies

ASA5505 to replace several VPN Clients (Hardwareclient)

rvopel
Level 1
Level 1

Hello all,

I want to know if it's possible to use the ASA5505 in a way that only one interface is connected to the LAN. A VPN Site to Site shall be done by NAT-T.

The interface IP should be set by DHCP from a router. The router shall route the traffic which shall be encrypted to the ASA. The ASA sends the Traffic to the Concentrator via tunnel.

Has someone ever done a scenario like that? Is there a sample configuration for this scenario?

Or can someone explain why this cannot work with the ASA?

2 Replies 2

gbudd12345
Level 1
Level 1

Are you asking if you can do this configuration with only one interface connected total, or only have interface on the WAN and one interface on the LAN? You can shut down the unused interfaces on the firewall so only two are active.

--Gavin Budd

Please take a look at my shematic. I think it tells you more than thousand words.

Thank you!