Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Can't SSH into ASA after configuring EZVPN and not specifying "split-tunnel-policy tunnelspecified"

Even after specifying "split-tunnel-policy tunnelspecified" with "split-tunnel-network-list value SPLIT-TUNNEL" and denying all traffic to/from the public IP of the ASA, I'm still not able to SSH into the firewall. Everything else appears to be working OK, but I need to be able to manage the ASA from the public interface. Actually, I kind of expect this given the say an sa is setup for the tunnel, and it would seem that a deny statement would be ignored, but maybe there is a way around this. Thank you.

Everyone's tags (6)
1 ACCEPTED SOLUTION

Accepted Solutions
VIP Purple

Re: Can't SSH into ASA after configuring EZVPN and not specifyin

If you want to connect to your inside IP through the tunnel, you need to specify "management access inside":

http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/access_management.html#wp1064497

regards, Karsten

Sent from Cisco Technical Support iPad App


--
Don't stop after you've improved your network! Improve the world by lending money to the working poor: http://www.kiva.org/invitedby/karsteni
1 REPLY
VIP Purple

Re: Can't SSH into ASA after configuring EZVPN and not specifyin

If you want to connect to your inside IP through the tunnel, you need to specify "management access inside":

http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/access_management.html#wp1064497

regards, Karsten

Sent from Cisco Technical Support iPad App


--
Don't stop after you've improved your network! Improve the world by lending money to the working poor: http://www.kiva.org/invitedby/karsteni
396
Views
0
Helpful
1
Replies