Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Re: PIX to PIX Certificate VPN question
Jun 09 2006 05:01PM
Aaron Rohyans (aaronr imcu com)
I may be misunderstanding you, but why do you have to use names within your certs to activate your split tunnel? Why can't you define the group and create a split tunnel ACL within it on both ends to serve as the basis for split-tunneling?
access-list nonat permit ip <local ip><local sub> <remote ...
[ more ]
Copyright 2010, SecurityFocus