Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Routing VPN client behind the PIX

Status
Not open for further replies.

ermedic

ISP
Dec 8, 2004
12
US
I have a PIX and terminating VPNs using Cisco VPN Client software. Behind the pix is a router with multiple internal subnets. When the Cisco VPN client connects to the pix, the user at the client can access the network between the PIX and the router, but nothing behind the router. This is because at the clients computer, the only route in it's routing table is for the network attached directly to the inside interface of the firewall.

How can I make it so that the pix adds multiple routes to the client's routing table upon connection?
 
Do you have "route inside..." commands in the PIX for every network behind the router? Does the ip local pool belong to an unassigned subnet on your network?
 
Actually....it looks like I was putting the cart before the horse. Once I specified the "interesting" traffic in the ACL, for the nonat and the tunnel, the routes got automatically entered once the VPN client connected.

Thanks for your help!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top