• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 501
  • Last Modified:

ASA connected to switchport of route configure as a client vpn

I have a cisco 1921 router with a 4 port switch hwic card.  I've attached an asa firewall and I'd like that to be a client access vpn.  How do I forward all client vpn traffic coming in on the external ip of the router to the asa?
0
dmwynne
Asked:
dmwynne
  • 2
1 Solution
 
lrmooreCommented:
Create static nat for UDP 500 and 4500

ip nat inside source static udp <ip of asa> 500 interface <wan interface> 500
ip nat inside source static udp <ip of asa> 4500 interface <wan interface> 4500
0
 
lrmooreCommented:
Oh yeah, and make sure you allow those two ports through any applied access-lists
0
 
dmwynneAuthor Commented:
I think that will work.

 If I have a site to site vpn currently running on the cisco router I would need to move that to the asa otherwise it will not work since the router will forward those ports to the asa.
0

Featured Post

Evaluating UTMs? Here's what you need to know!

Evaluating a UTM appliance and vendor can prove to be an overwhelming exercise.  How can you make sure that you're getting the security that your organization needs without breaking the bank? Check out our UTM Buyer's Guide for more information on what you should be looking for!

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now