This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN Split-Tunnel Exceptions

Hello,

 

I'm currently having an issue with Split-Tunnel SSL VPN on the XG Firewall. Typically everything works fine, but I do have a 3rd party website we need to access every now and then that will not work via the Split-Tunnel SSL VPN. Our current work around is to use remote desktop and connect remotely to a workstation at the office and load the site on that. My question is this, is it possible to add a exception to the VPN settings so that this site's traffic is only ever going through the VPN? I don't want it to bypass the VPN at all, because that's why it's currently not working.

 

Thanks,

Myke



This thread was automatically locked due to age.
Parents
  • Hi  

    The 3rd party website which you are referring is allowed via your office ISP IPs only ? If yes then in that case you may required to add that 3rd party website IP address under accessible resources in your SSL VPN settings. so traffic from end system will be routed to XG via SSL VPN. ( Also configured VPN to WAN rule with MASQ applied for the same website by putting website IP in destination network/host in rule.)

    The above will route the particular site traffic over SSL VPN all the time from end machine whenever end user machine is connected over SSL VPN.

  • Thanks for the response! I've added the IP of the site we need to flow through the VPN tunnel only to the VPN to WAN rule under "Destination Networks". I'm going to get the team member who needs to use that site to test it and will report back with my findings.

     

    Thanks!

Reply
  • Thanks for the response! I've added the IP of the site we need to flow through the VPN tunnel only to the VPN to WAN rule under "Destination Networks". I'm going to get the team member who needs to use that site to test it and will report back with my findings.

     

    Thanks!

Children