VPN tunnel match list overlaps local LAN

Hi,

We have four offices which use various subnets under 10.0.0.0/16, these are connected with a fully meshed VPN network. Each office also has a connection to a larger network using lots of other subnets under

10.0.0.0/8. Rather than trying to maintain all the individual subnets on the last tunnel we wanted to just encapsulate any traffic to 10.0.0.0/8 on it.

i.e. access-l mainnet permit ip 10.0.168.0 255.255.252.0 10.0.0.0

255.0.0.0

However, this seems to be an issue as the destination overlaps the local subnet. Is there a way around this or do we just have to keep updating our matching list with more specific subnets?

Thanks, James

Reply to
James Dingwall
Loading thread data ...

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.