I don't see why not. The ASA is more restrictive in what it allows, an ACL blocking access to your internal segments referenced by ip nat source list with a pool in your outside network should do the trick. I think you'd be better off using NVI for this application.
-ryan
-----Original Message-----
From: nobody_at_groupstudy.com [mailto:nobody_at_groupstudy.com] On Behalf Of Fake Name
Sent: Thursday, September 24, 2009 4:21 PM
To: Cisco certification
Subject: ios ezvpn question
No one know?
On Sat, Sep 19, 2009 at 5:51 PM, Fake Name <fname84_at_gmail.com> wrote:
> Hello All.
>
> With ios is it possible to do hairpinning (going into and then boucing out
> of the outside interface like the asa product line for internet access from
> ezvpn laptop clients). I have a requirement where I need to tunnel all
> traffic on laptops and then have it hairpin internet traffic out the
> interface it came into. I can't use a split tunnel acl or a seperate
> internet connecection to direct traffic too.
Blogs and organic groups at http://www.ccie.net
Received on Thu Sep 24 2009 - 16:36:45 ART
This archive was generated by hypermail 2.2.0 : Sun Oct 04 2009 - 07:42:04 ART