Re: Traffic between 2 VPN tunnel on same ASA

From: Cisco League <ciscoleague_at_googlemail.com>
Date: Thu, 18 Mar 2010 11:29:05 +0000

Assuming you have sorted routing and access-lists are not blocking traffic
from A-C and vice versa.

On A add traffic from A--->C in the interesting traffic access list and
no-nat access-list.
On B add traffic from A--->C in the interesting traffic access list and
no-nat access-list.
On C add traffic from C--->A in the interesting traffic access list and
no-nat access-list.
On B add traffic from C--->A in the interesting traffic access list and
no-nat access-list.

Regards,
CiscoLeague

On Thu, Mar 18, 2010 at 11:07 AM, Parag Hadas <Parag.Hadas_at_amdocs.com>wrote:

> Hi All,
>
> I have 3 remote sites: A, B, and C all running Cisco ASA devices with
> version
> 8.0.
> I have successfully configured a VPN tunnel between site A and B. I've also
> configured a tunnel between site B and C.
> I would like for site A to be able to get to site C THROUGH site B. I
> cannot
> create a direct tunnel between A and C due to circumstances.
>
> Is this possible? If so, where should I configure my routing statements?
>
> When pinged from A to C, I can see packets getting decryp at B but they
> don't
> go to tunnel to C. I have enabled same-interface-traffic intra-interface
> also.
>
> Thanks and Regards,
> Parag Hadas
>
>
> This message and the information contained herein is proprietary and
> confidential and subject to the Amdocs policy statement,
> you may review at http://www.amdocs.com/email_disclaimer.asp
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Thu Mar 18 2010 - 11:29:05 ART

This archive was generated by hypermail 2.2.0 : Thu Apr 01 2010 - 07:26:35 ART