05-12-2006 11:19 AM - edited 02-21-2020 12:53 AM
We have the VPN 3005 Concentrator. The users are authenticated through IPSEC through VPN client. How do we setup so that the users can only access a selected subnet? Thanks.
05-14-2006 04:34 AM
Hi .. sure ... basically you need to need to create a subnet list and the apply it to the respective VPn group.
1.- go to Configuration | Policy Management | Traffic Management | Network Lists
create list and add the subnet(s) you want to allow access.
2.- go to Configuration | User Management | Groups
select the respective group and clikc on Modify for accessing the grup properties.
3.- Select the 'Client config' tab and add the network list you created on point one to the
Split Tunneling Network List option. Also UNTICK the 'inherited' option that appears beside it.
4.- Make sure your network knows how to route back to the Ip pool allocated to teh VPN clients.
This should allow this vpn group access to only the subnet(s) included on the list.
I hope it helps ... please rate if it it does !!!
05-15-2006 06:53 AM
Thanks very much for your prompt response and information, Fernando. How do you verify step #4? Thanks.
Diane
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: