Hi, if you don't check the 'automatic firewall rules' option in the VPN settings, then you have control over the traffic via firewall rules and proxies.
Okay, but can the UTM also control so that I cannot reach devices at my own LAN, so when I am at home and establish a VPN with SSL client to the company, I can no longer access local devices ex. my NAS?
Nope, this option doesn't exist as it does with Cisco Martin. You might be able to gain the same effect by setting the local network in the VPN profile to 0.0.0.0, which should force all traffic over the tunnel.