08-20-2003 08:56 AM - edited 03-09-2019 04:29 AM
We would like to enable internet browsing for our remote VPN clients. We do not want to use split tunnel. Our goal is to have all traffic flow through the VPN head end device. Where are the necessary configuration changes applied. (Concentrator, Pix Firewall, etc.)
08-20-2003 09:57 AM
It depends on your config.
I don't think it is possible on the pix due to the pix's inability to send packets out on the interface on which they were received. Maybe on a multiple (>2) interface pix where isakmp/crypto map are bound to a non outside int, but I still don't know if that will do it.
Internet browsing should work out of the box on a 3000 concentrator, provided there is a route to the internet.
08-20-2003 08:37 PM
u may setup a proxy that sits inside your network. when mobile user connected by vpn client software, internet traffic can point to the proxy.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide