Link to home
Start Free TrialLog in
Avatar of Rick Goodman
Rick Goodman

asked on

ASA Config Issue, kind of complicated

I have a Cisco 5516-X ASA at the perimeter of my site. People connect to it to access our corporate LAN via AnyConnect VPN Client. I also have a 5506-X ASA inside the corporate LAN that's used to isolate a Process Control network (Process Control network is on the inside interface and corporate LAN is on the outside interface). I need to allow a person who connects to the 5516-X via AnyConnect to be able to RDP to a PC on the LAN side of the 5506-X in the Process Control network. Is this even possible? And if so, what is the best way to accomplish this?
ASKER CERTIFIED SOLUTION
Avatar of Ken Boone
Ken Boone
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Oh yea.. on the 5516-x you will need a no nat rule as well for the PCN network when talking to the anyconnect users and you might need a split-tunnel access-list created to allow the PCN network if you are using split tunnel.
Avatar of Rick Goodman
Rick Goodman

ASKER

Thanks Ken.