cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
455
Views
0
Helpful
3
Replies

Controlling traffic in an ipsec tunnel on vpn3005

foster177
Level 1
Level 1

Is there any way to control or firewall the traffic that goes through an ipsec tunnel from a client PC to our vpn3005? I would like to allow only http, https and ssh from clients in the field to our network by restricting the ipsec tunnel traffic. Is this possible?

3 Replies 3

Vikas Saxena
Cisco Employee
Cisco Employee

Hello,

Thankfully you are using a conc. otherwise you would have started getting nightmares by now.

You can define filters for the VPN tunnels and they can be very granular.

Check the administration guide for the conc. Use

VPN Concentrator 3005 administration Guide.

Vikas

my understanding is that filters do not control traffic that goes into the tunnel.

Hello,

Sorry for the delay,

Yes filters do control the traffic that goes into the tunnel.

Check out Policy Management and Tunneling and Security menus of the GUI.

Also,

http://www.cisco.com/en/US/partner/products/hw/vpndevc/ps2284/products_configuration_guide_chapter09186a00803ee22f.html#wp1000192

Vikas

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: