I have a remote site that I need to connect to our central site via site to site PIX VPN. I can do that without issue. My question is we also have contractors at the site who only need interent access and should not enter the tunnel back to the central site. The PIX is a 501 so no DMZ is available. Can I do this with access-lists or some other means. Basically i want employee traffic to enter the tunnel but non-employees to only tap into internet period.
best regards,
Mike