I have had a look at the document on PBR. Thanks. Did you get a chance to look at my diagram? At present FW B cannot talk to network B. Therefore, I dont understand how PBR can help at this stage?
I have looked at the logs and the FW itself is dropping packets for the destination... but only...
It will work now.
https://docs.google.com/present/edit?id=0Aeu9SG2Cng8hZG5tOGY2Zl81NzBjNXM1cDd2Ng&hl=en_GBhttps://docs.google.com/present/edit?id=0Aeu9SG2Cng8hZG5tOGY2Zl81NzBjNXM1cDd2Ng&hl=en_GB
Site B has a site to site VPN with site A. So some traffic will go via the VPN to site A. However some traffic will go out of Site B Firewall as normal.
My real question is whether I should be able to configure the Site B firewall to allow traffic to traverse its own VPN tunnel. If so, how...
Yes.
The reason is that I have enabled netflow on both firewalls. The Netflow Collector is in site A (so no problem there). The firewall in Site B needs to send its netflow data. Ideally if it can send it via the site to site VPN it will be secure.
I have two sites with asa firewalls (ASA5520) at each site with a site to site VPN.
I need to allow traffic initiated from the firewall to travel through the vpn to the second site to a server behind the firewall. I would like to know if the ASA supports this as I have not been able to make it...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.