Hello,
I have successfully created an SSH Sentinel dynamic host -> ASL 4.010 X.509 VPN connection. In this setup the local subnet is my internal network.
I would like to create the same VPN connection but have the subnet definition go to Private_Network_192.168.0.0 instead. The idea here is that I can provide the VPN access but then limit the VPN connections to only accessing a few hosts on the internal network and a few services on those hosts (IMAP, SMTP, http, etc).
Since Private_Network_192.168.0.0 is defined in ASL I would think I could use it just like I used the internal network for the local subnet in the VPN connection. My concern is that since there is no actual NIC in the ASL machine running on that Private_Network_192.168.0.0 that there will be no route for it and no IP will be passed, even if I have packet rules allowing it.
Can someone give me some advise? Is it possible to VPN to a local subnet on the ASL side that has no real nic associated with it?
Thanks!
This thread was automatically locked due to age.