<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Access on Selected Subnet in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587372#M1055142</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ..  sure ...  basically you need to need to create a subnet list and the apply it to the respective VPn group.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.- go to Configuration | Policy Management | Traffic Management | Network Lists&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;create  list and add the subnet(s) you want to allow access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.- go to Configuration | User Management | Groups&lt;/P&gt;&lt;P&gt;select the respective group and clikc on Modify for accessing the grup properties.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3.- Select the 'Client config' tab and add the network list you created on point one to the &lt;/P&gt;&lt;P&gt;Split Tunneling Network List option. Also UNTICK the 'inherited' option that appears beside it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4.-  Make sure your network knows how to route back to the Ip pool allocated to teh VPN clients.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This should allow this vpn group access to only the subnet(s) included on the list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps ... please rate if it it does !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 14 May 2006 11:34:05 GMT</pubDate>
    <dc:creator>Fernando_Meza</dc:creator>
    <dc:date>2006-05-14T11:34:05Z</dc:date>
    <item>
      <title>Access on Selected Subnet</title>
      <link>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587371#M1055141</link>
      <description>&lt;P&gt;We have the VPN 3005 Concentrator.  The users are authenticated through IPSEC through VPN client.  How do we setup so that the users can only access a selected subnet?  Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 08:53:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587371#M1055141</guid>
      <dc:creator>dianewalker</dc:creator>
      <dc:date>2020-02-21T08:53:55Z</dc:date>
    </item>
    <item>
      <title>Re: Access on Selected Subnet</title>
      <link>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587372#M1055142</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi ..  sure ...  basically you need to need to create a subnet list and the apply it to the respective VPn group.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.- go to Configuration | Policy Management | Traffic Management | Network Lists&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;create  list and add the subnet(s) you want to allow access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.- go to Configuration | User Management | Groups&lt;/P&gt;&lt;P&gt;select the respective group and clikc on Modify for accessing the grup properties.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3.- Select the 'Client config' tab and add the network list you created on point one to the &lt;/P&gt;&lt;P&gt;Split Tunneling Network List option. Also UNTICK the 'inherited' option that appears beside it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4.-  Make sure your network knows how to route back to the Ip pool allocated to teh VPN clients.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This should allow this vpn group access to only the subnet(s) included on the list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps ... please rate if it it does !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 May 2006 11:34:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587372#M1055142</guid>
      <dc:creator>Fernando_Meza</dc:creator>
      <dc:date>2006-05-14T11:34:05Z</dc:date>
    </item>
    <item>
      <title>Re: Access on Selected Subnet</title>
      <link>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587373#M1055143</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks very much for your prompt response and information, Fernando.  How do you verify step #4?  Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Diane&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 May 2006 13:53:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/access-on-selected-subnet/m-p/587373#M1055143</guid>
      <dc:creator>dianewalker</dc:creator>
      <dc:date>2006-05-15T13:53:34Z</dc:date>
    </item>
  </channel>
</rss>

