Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Re: SSG140 Site to Site VPN with ASA Multiple Subnets

$
0
0

With a policy VPN you create the policy and choose an Action of "tunnel" instead of permit.  You can only permit then, you cannot create deny policies.

 

With the route based vpn you will find a binding to a tunnel interface on your "Autokey IKE" policy in the advanced tab.  There is no interface binding on the policy VPN.

 

Also with route VPN you need to create routes into the tunnel interface for the desired subnets, probably static routes in this situation.


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>