cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
322
Views
0
Helpful
1
Replies

Restrict access for VPN Client on IOS EZVPN Server

owalter
Level 1
Level 1

I like to restrict a VPN Client to access only one /24 network at the central site. In

crypto isakmp client configuration group mode i cannot find such an option.

On ASA there is such option.

Is there another way to do this ?

Either on legacy EZVPN config or on DVTI.

1 Reply 1

htarra
Level 4
Level 4

This URL provides a sample configuration using the Cisco Adaptive Security Device Manager (ASDM) for restricting what internal networks remote access VPN users can access behind the PIX Security Appliance or Adaptive Security Appliance (ASA). You can limit remote access VPN users to only the areas of the network that you want them to access when you:

Create access lists.

Associate them with group policies.

Associate those group policies with tunnel groups

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080641a52.shtml