I do have static routes on the inside interface. Chad Schneider Systems Engineer ThedaCare IT 920-735-7615 >>> Saravanan Srinivasan <sarav2k@xxxxxxxxx> 11/20/2007 7:49 PM >>> This is related to Routes on your CAG, You probably have Static routes. I am still working on the same thing. After I added a route like this eth1 64.0.0.0 255.0.0.0 GW I was able to browse google. but I started getting some vpn issues. I may have to figure out what is the right route I need to add. Hope this helps Saravanan Steve Greenberg <steveg@xxxxxxxxxxxxxx> wrote: Check your default gateway, you obviously have on for the insider, you might not have one set for going outward… Steve Greenberg Thin Client Computing 34522 N. Scottsdale Rd D8453 Scottsdale, AZ 85262 (602) 432-8649 www.thinclient.net ( http://us.f530.mail.yahoo.com/ym/www.thinclient.net ) steveg@xxxxxxxxxxxxxx From:thin-bounce@xxxxxxxxxxxxx [mailto:thin-bounce@xxxxxxxxxxxxx] On Behalf Of Chad Schneider (IT) Sent: Tuesday, November 20, 2007 8:37 AM To: thin@xxxxxxxxxxxxx Subject: [THIN] CAG All seems well, SSL VPN working great for all internal items. What I have found, is that access to web pages outside the network, such as dell.com, google.com,. etc., fail. Split tunneling is disabled. All traffic should be going through the CAG, and should work fine. Chad Schneider Systems Engineer ThedaCare IT 920-735-7615