cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
302
Views
0
Helpful
1
Replies

PIX 501 - Splitting traffic issue

madlm
Level 1
Level 1

I have a remote site that I need to connect to our central site via site to site PIX VPN. I can do that without issue. My question is we also have contractors at the site who only need interent access and should not enter the tunnel back to the central site. The PIX is a 501 so no DMZ is available. Can I do this with access-lists or some other means. Basically i want employee traffic to enter the tunnel but non-employees to only tap into internet period.

best regards,

Mike

1 Reply 1

Give the employee machines static DHCP allocations from a contigous block, then only allow those through the tunnel.

Review Cisco Networking for a $25 gift card