[c-nsp] 3005 VPN Concentrator Question

McLean Pickett McLean.Pickett at ptgcorp.com
Tue Nov 2 10:35:18 EST 2004


Hello All -

I have a 3005 running 4.1.4. I am trying to add a new address group in the 10.1.8.0/24 network. My private interface is 10.1.1.251/24 with a 10/8 route to 10.1.1.1. Users can connect to the public interface, establish a tunnel and get an address assigned out of the 10.1.8.0/24 network, however all of their traffic routes out the public interface even if they are trying to reach a 10/8 network. 

Do the address pools have to come out of a subnet configured directly on the private interface? I associated the pool with a group, but have not globally created the pool. Could that be part of the problem?

Thanks,
McLean



More information about the cisco-nsp mailing list