This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How filter access from IPSEC VPN

Hi to all,
i look to all possible configuration but probably i made something wrong...

Is it possible and wich is the best way to filter accessing from IPSEC clients to some IP address on my LAN?

BYE
Rick.


This thread was automatically locked due to age.
Parents
  • Rick,

    in the current release ASL sets auto filters after
    a client has successfully authenticated.
    The filter correponds with the security association
    of your IPSEC/VPN settings.

    The coming version will support the feature "vitual
    address assigning" and you can decide if you like
    to operate with auto filters or if you want to confiure
    a stricter ruleset.

    read you
    o|iver
  • Hi Oliver,
    can you better explain what "auto-filters" means?
    When you think "virtual address assigning" will be available (weeks/months/years)?

    bye
    Rick.
Reply Children
  • Rick,

    auto filter means that the firewall allows automatically
    any traffic from an authenticated VPN client (IP address)
    to the network which is configured as remote network.

    Example:

    Sentinel's config is to encrypt all data directed to 192.168.x.x
     over gateway y.y.y.y After the client is authenticated 
    the firewall opens  the filter for the IP address of the client 
    to  192.168.x.x automatically.

    read you
    o|iver
     
     [size="1"][ 19 December 2002, 07:36: Message edited by: oliver.desch ][/size]