Dears, I was tested today for a lab. Well, it was mentioned Not to use Split tunnel ACL and i was given an ASA 5540 Appliance.
Well, it was configured with nat-control enabled ! i came home and searched online and found this link : http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/vpnsysop.html#wp1045332 well, does the ASA command intra-interface permit would do the job for me !!! regards, Kamran.
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
