We need to give a contractor access to his three servers behind our UTM. If we allow him to connect using the SSL VPN, how do we limit his access to the three servers?
This thread was automatically locked due to age.
Hi Steven,
just create an SSL-VPN profile for the specific user und put under allowed networks the three servers.
Untick automatic firewall rule and create a firewall rule under network prtection where you use the user network object the threee servers and the desired ports that are needed.
Best Regards
DKKDG
Or just leave the automatic firewall rule selected. It will only give access to the servers configured in it and it will also automatically disable should you disable the VPN-profile whereas a manually created rule remains enabled (unless of course you also manually disable it again).
Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.
Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.
Or just leave the automatic firewall rule selected. It will only give access to the servers configured in it and it will also automatically disable should you disable the VPN-profile whereas a manually created rule remains enabled (unless of course you also manually disable it again).
Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.
Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.