ASA842 L2LVPN not configured for tunnel separation and branch offices from the headquarters of the public network test

Source: Internet
Author: User

A. Test topology:

Two. Test ideas:

A. Headquarters ASA does not configure the tunnel separation, branch office all traffic to go VPN

B. Headquarters ASA configuration NAT Allow Branch segment pat on public net

----Because the branch traffic will bounce traffic from the outside interface, you need to configure Same-security-traffic permit Intra-interface

Three. Basic configuration:

A.inside Router:

Interface ethernet0/0

IP address 10.1.1.2 255.255.255.0

No shutdown

IP Route 0.0.0.0 0.0.0.0 10.1.1.1

b.center_asa842 Firewall:

Interface GigabitEthernet0

Nameif inside

Security-level 100

IP address 10.1.1.1 255.255.255.0

Interface GigabitEthernet1

Nameif outside

Security-level 0

IP address 202.100.1.1 255.255.255.0

Route outside 0.0.0.0 0.0.0.0 202.100.1.10

Access-list outside extended permit ICMP any any

Access-group outside in interface outside

C.internet Router:

Interface Loopback0

IP address 61.1.1.1 255.255.255.0

Interface ethernet0/0

IP address 202.100.1.10 255.255.255.0

No shutdown

Interface ETHERNET0/1

IP address 202.100.2.10 255.255.255.0

No shutdown

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.