[Webinar] Streamline your web hosting managementRegister Today


how i can access ASDM from outside via VPN

Posted on 2010-04-09
Medium Priority
Last Modified: 2012-05-09
i have ASA 5505 and i have configured remote Access VPN and it works fine and can access the internal equipments through Telnet, but the ASDM can not work over VPN and can not access the ASA using ASDM
Question by:mohamedzidan
  • 2
LVL 33

Accepted Solution

MikeKane earned 1000 total points
ID: 30254931
Supposedly, this process should allow it to work:

ciscoasa# config terminal
ciscoasa(config)# management-access inside
ciscoasa(config)# end

Can you verify that for me as well and report back.

Author Comment

ID: 30288112
this command makes inside interface as managment only interface and it will block the normal traffic, so i do not think it will be a solution..

Assisted Solution

PWeerakoon earned 1000 total points
ID: 30318792
From the Device Management->Management Access->ASDM/HTTPS/Telnet/SSH section add the IP range for the VPN clients as permitted on the INSIDE interface.

Or from the command line for ASDM access...

http VPN_IP_RANGE inside

Or for SSH access...

ssh VPN_IP_RANGE inside

The command suggested above by MikeKane "management-access inside" is also turned-on on my ASA but I don't remember if that was necessary or not (but it doesn't block normal traffic, so you can keep it turned-on without any problems).

But the main step is allowing the VPN IP range on the INSIDE interface.

Author Comment

ID: 30326417
i have tried it and it works fine.. both comands are necessary "management-access inside" and http VPN_IP_RANGE inside. i have tried just one of them but it does noty work, so you have to configure both..

anyway it works fine now..


Featured Post

The eGuide to Automating Firewall Change Control

Today’s IT environment is constantly changing, which affects security policies and firewall rules. Discover tips to help you embrace this change through process improvement & identify areas where automation & actionable intelligence can enhance both security and business agility.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…
Suggested Courses

607 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question