VPN tunnel match list overlaps local LAN

Nov 22, 2006 0 Replies

Hi,



We have four offices which use various subnets under 10.0.0.0/16, these are connected with a fully meshed VPN network. Each office also has a connection to a larger network using lots of other subnets under



10.0.0.0/8. Rather than trying to maintain all the individual subnets on the last tunnel we wanted to just encapsulate any traffic to
10.0.0.0/8 on it.

i.e. access-l mainnet permit ip 10.0.168.0 255.255.252.0 10.0.0.0



255.0.0.0

However, this seems to be an issue as the destination overlaps the local subnet. Is there a way around this or do we just have to keep updating our matching list with more specific subnets?



Thanks, James


Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required