07-23-2023 10:46 PM
With the sample diagram above:
Red line = Internet Access
Blue Line = Port that setup to use by End user
Light Green = Ports allocated for VPN
Green Line = Active connection to a remote Cisco AnyConnect VPN Server
Is this do-able?
07-24-2023 08:07 AM - edited 07-24-2023 08:07 AM
I do not understand your question completely?
but what I think will answer your question is segmenting your network using VLAN's + subnetting
- red: vlan 10 / 10.0.10.0/24 will, for clients then only need internet access
- blue vlan20 / 10.0.20.0/24 separate network for end users
green/light green: vlan 30 / 10.0.30.0/24 vlan to separate VPN clients
this can be done on a manageable L2 switch where you can configure VLAN's
you can keep those networks completely separate
but if you do need traffic between them in the future, you can add a router with AccessList to allow specific trafic
if the switch hat L3 capabilities, this may be done in a single device
if no L3 capabilities you will need to add a router to forward packets between the vlan's
07-24-2023 02:28 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide