Add extra route to site-to-site VPN SA520
Posted on 2014-11-13
I have stood up a site to site VPN link between a Cisco SA520 and a Cisco SA540 using a single VPN and IKE profile.
I can get IP routing between the branch office and the subnet included in the VPN profile. ie, 10.80.30.0 to 10.3.0.0. All works.
However, i can't seem to add routes to other subnets in the main site.
When i add the route using the networking tool, the PING appears to travel via the interent and not the VPN tunnel
both routers are on latest firmware.
Do I need to create separate VPN profiles for each subnet I need to transverse via the VPN tunnel?