Skip to main content
CAD
New Member
December 4, 2017
Question

Restrict Vpn users to Access specific internal server

  • December 4, 2017
  • 2 replies
  • 13937 views

Hi all,

I have 200D running 5.2.11, and using SSL vpn

I need to allow VPN remote users to access certain internal servers.

 

Design network :

we have three interfaces (internal , Wan,DMZ)

I have tried to create Fwpolicy but this deny users from connect to VPN. Almost servers connected to internal interface

 

Thanks

    2 replies

    adogra
    New Member
    December 4, 2017

    Hi,

     

    As you've mentioned certain internal servers. What you can do is:

     

    - Create addresses in firewall for those servers IP's or range if you have.

    - Create another IPv4 policy for SSL VPN users or instead edit existing SSL VPN policy and add those Server range or multiple addresses that you have added as an addresses in firewall.

     

    Hope this helps.

     

    Cheers

    Atul

     

     

     

     

    CAD
    CADAuthor
    New Member
    December 4, 2017

    Thank you for response

    As i mentioned above , once create policy for ssl vpn it deny user form connect to vpn

    i want allow user which appeared in the policy to access the DC server only.

     

     check the policy in screenshot.

     

    Thanks

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!