Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ASA Hairpinning

Does anyone know how I can setup a client vpn group to be able to terminate at an ASA and still have Internet and the ability to traverse other VPN connected sites (Hardware VPN)?

Thanks

1 REPLY
New Member

Re: ASA Hairpinning

Hello.

to allow traffic to enter and exit the same interface, use the same-security-traffic command in global configuration mode.

same-security-traffic permit intra-interface.

As long as you configure the ASA and the other VPN site routers to permit traffic for the client VPN address range this will work.

Tim

305
Views
0
Helpful
1
Replies
CreatePlease to create content