Cisco Systems VPN Internet Issues

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
VPN Internet Issues glopin 01-08-06
Posted by glopin on January 8, 2006, 8:55 am
Please log in for more thread options
Hello All,
My client connects to a corporate vpn using cisco vpn client. When they
connect to the vpn, their LAN goes offline. Their corporate client does
not allow internet browsing while on the vpn. Is their a work around
this issue? can I install a second nic card and put their LAN on that
interface?
thanks
Glopin


Posted by Uli Link on January 9, 2006, 4:56 am
Please log in for more thread options
glopin schrieb:

> My client connects to a corporate vpn using cisco vpn client. When they
> connect to the vpn, their LAN goes offline. Their corporate client does
> not allow internet browsing while on the vpn.

This is normal behaviour.

> Is their a work around

Yes. Local LAN or split tunnel can be enabled. Usually the admin of the
VPN gateway has good reasons *not* to allow uncontrolled network access
while connecting to the inside of a corporate network. That's best
practise network security policy.
This may be different, if the VPN tunnel terminates on the remote
office's router and this box is controlled and conforming to the
enterprises security policy.

> this issue? can I install a second nic card and put their LAN on that
> interface?

This can be done physically, but won't help.
Bringing up the VPN changes the default gateway on the VPN client. The
routing rules are pushed from the VPN gateway to the client. If the
rules don't fit, there won't establish a IPsec SA.

--
Uli

Similar ThreadsPosted
VPN Internet Issues January 8, 2006, 8:56 am
VPN Internet Issues January 8, 2006, 8:55 am
VPN Internet Issues January 8, 2006, 8:57 am
Routing Question - How to send default internet traffic to PIX and VPN traffic from router out internet February 27, 2007, 1:58 pm
503 dmz+vpn issues December 14, 2005, 11:19 am
503 dmz+vpn issues December 14, 2005, 11:19 am
NAT issues March 12, 2007, 9:29 pm
VPN Issues on 837 March 23, 2007, 9:08 am
ASA OS QA issues?? May 30, 2007, 1:18 pm
BGP issues June 27, 2008, 3:59 pm
Cisco VPN issues August 2, 2005, 6:30 pm
VLAN Issues September 22, 2005, 4:18 pm
IOS ipsec issues October 11, 2005, 2:59 am
PIX 501 newbie (VPN issues) October 31, 2005, 4:38 pm
cisco 837 ip issues January 26, 2006, 2:00 pm