cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
329
Views
0
Helpful
3
Replies

Connected VPN can talk to one subnet, but not the other subnet?

abrrymnvette
Level 1
Level 1

I have AnyConnect Essentials and can connect just fine and communicate to one of our networks just fine. Problem is, I can't talk with our other network.

We have an ASA-5501 running  8.3(1)

I can connect with the VPN and get to every host on network 10.1.1.x, but I can't talk to any host on 10.2.1.x.


I don't know where to start looking?

I'm running ASDM 6.3(2)

We have the Security Plus license if it matters.

Thanks!

3 Replies 3

Collin Clark
VIP Alumni
VIP Alumni

It's usually 1) NAT is missing for the second network or 2) the 10.2.1.x is not part of your interesting traffic ACL or 3) routing is missing back to the VPN clients

If NAT were missing from the second network, wouldn't not be able to reach it from within the LAN? If I'm sitting at my desk, I can reach both networks just fine.

From within the LAN, both networks are fully able to communicate.

Todd Pula
Level 7
Level 7

The usual suspects are split tunneling, routing, and NAT.  Feel free to PM me your config if you want me to review.