cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2398
Views
3
Helpful
2
Replies

Dictionary attribute Cisco-VPN3000:CVPN3000/ASA/PIX7x-IPSec-Split-Tunneling-Policy

scamarda
Cisco Employee
Cisco Employee

Editing AuthZ profile.  Manually adding ASA VPN attributes.  Getting the following error.

Unable to edit Authorization Profile (VPNGroupPolicy) : Value for the dictionary attribute Cisco-VPN3000:CVPN3000/ASA/PIX7x-IPSec-Spli

t-Tunneling-Policy should be of Unsigned Int 32 type.

What values are appropriate for this attribute?

Thanks.

Sam

1 Accepted Solution

Accepted Solutions

howon
Cisco Employee
Cisco Employee
VALUEASA-IPsec-Split-Tunneling-Policy No-Split-Tunneling0
VALUEASA-IPsec-Split-Tunneling-Policy Split-Tunneling1
VALUEASA-IPsec-Split-Tunneling-Policy Local-LAN-Permitted2

Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring an External Server for Security Appliance Use…

Also, some reference on how to use the feature:

https://supportforums.cisco.com/discussion/10764256/dynamic-split-tunnel

View solution in original post

2 Replies 2

howon
Cisco Employee
Cisco Employee
VALUEASA-IPsec-Split-Tunneling-Policy No-Split-Tunneling0
VALUEASA-IPsec-Split-Tunneling-Policy Split-Tunneling1
VALUEASA-IPsec-Split-Tunneling-Policy Local-LAN-Permitted2

Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring an External Server for Security Appliance Use…

Also, some reference on how to use the feature:

https://supportforums.cisco.com/discussion/10764256/dynamic-split-tunnel

Thanks for the help.  This allowed me to move forward.