cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
275
Views
0
Helpful
2
Replies

Remote Access VPN Question - Allow certain websites for Split Tunnel VPN

redwarrior
Level 1
Level 1

Crossposted on firewall forum -

I'm dissallowing split-tunnel vpn for remote access connections, but I'd like to allow a couple of external websites to still be accessed. I'm using a ASA 5520 with ASDM 6.0 and I noticed that on the split tunnel tab there is a place where I can enter allowed networks for split tunnels and above that something that says "domain names." What I'm wondering is if I can use this section to enter dns names of the websites I want to allow users access to since these are "server farms" with multiple IP addresess?

2 Replies 2

a.alekseev
Level 7
Level 7

do NAT for VPN clients and let them go out to the websites through vpn

Just trying to understand this better:

So, I would set up that particular VPN group to NAT to a public IP address and then how would I restrict them to only the website I wan them to reach versus all web access? I guess I'm just not sure what that ACL would look like once I'm done.

Thank you!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: