Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN users' access to the Internet

As part of a remote-access trial, I have configured a PIX-515e as a PPTP server, and dial in users can successfully connect to the corporate internetwork through it. However, the dial in users cannot access the Internet, as the PIX firewall does not allow packets to leave by the same interface (ouside in this case) as they entered. Can the PIX be configured to allow this, or is not worth the increased security risk?

1 REPLY
Cisco Employee

Re: VPN users' access to the Internet

No, PIX will not allow that. PIX will not route traffic to exit same interface as it enters. Alternatively, you can terminate the PPTP on the DMZ interface, that way it will work.

R/Yusuf

86
Views
0
Helpful
1
Replies