We have an ASA5510 configured ok to acces the internet etc, users can access the portal ok and download the AnyConnect SSL client and get LAN access etc, but it only has the default 2 licenses.
They bought 250 IPSec licenses, so we set up IPSec VPN access, and have eventually got the client to connect to the VPN, but for the life of us we cant narrow down what is stopping access.
it looks like an ACL doing it, but we cant see which one could.
you can telnet the firewall and ping the LAN, and ping the VPN client, etc, but they cant access one another.
it continually logs
10.10.11.3 47070 UKDC01 53 Authorization denied (acl=DAP-ip-user-B0BF360E) for user 'administrator' from 10.10.11.3/47070 to UKDC01/53 on interface PublicINT using UDP
for all protocols from the VPN client.
if required i can paste the config here?
Cheers
Gurner
They bought 250 IPSec licenses, so we set up IPSec VPN access, and have eventually got the client to connect to the VPN, but for the life of us we cant narrow down what is stopping access.
it looks like an ACL doing it, but we cant see which one could.
you can telnet the firewall and ping the LAN, and ping the VPN client, etc, but they cant access one another.
it continually logs
10.10.11.3 47070 UKDC01 53 Authorization denied (acl=DAP-ip-user-B0BF360E) for user 'administrator' from 10.10.11.3/47070 to UKDC01/53 on interface PublicINT using UDP
for all protocols from the VPN client.
if required i can paste the config here?
Cheers
Gurner