Solved

Cisco asa 5510 VPN Ips

Posted on 2006-07-14
2
294 Views
Last Modified: 2013-11-16
Hello, I have a cisco VPN and I'm trying to figure out the VPN settings.
I have the inside interface 192.168.20.0/16

When I set the VPN, Do I have to give the VPN users IPs from the same range or can I just give them any IP and the firewall will create the routes.
When we were using the CYberguard VPN the clients used to get ips from an very rare range 20.20.20.0/24 ..........This way they will never have problems when they connect to the vpn server and the local lan that they are connecting from  is on the same range as our network.

0
Comment
Question by:quippee
2 Comments
 
LVL 9

Accepted Solution

by:
stressedout2004 earned 500 total points
Comment Utility
Cisco recommends that the VPN users IP subnet be on a different subnet than that of the internal network to avoid any routing issues.The ASA will automatically take care of routing for the VPN IP subnet. If the internal network's default gateway is pointed to the ASA inside interface, then you have nothing to worry about. Most of the time when the VPN user's subnet is on the same subnet as that of the internal network, the VPN users are not able to pass any traffic.
0
 

Author Comment

by:quippee
Comment Utility
Yup. I tried it again and it works.....I have different IPs for the VPN users and they are able to connect to the network......I havent enable split tunneling so they should have access to the internet through the VPN but is not working......DNS resolutino is working OK.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now