cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
161
Views
0
Helpful
1
Replies

PC Access via VPN Using ASA5505 question

GregH.NY
Level 1
Level 1

We need to create a client VPN to our network. When clients use this VPN they will only have access to one particular PC.

We do not want this PC to have access to the rest of the LAN but we do want users on the LAN to have access to the PC.

Currently we put the PC in its own VLAN

We are using an ASA5505

What are the commands required to make this work?

Any help will be appreciated.

Thanks

1 Reply 1

dukenuk96
Level 3
Level 3

Several options exist:

+ make interface facing LAN security level 100 and to the PC 50, by default traffic from LAN to PC will be allowed becuse going from higher-security to lower-security

+ make both interfaces same security level and apply denying ACL for input direction of interface facing to the PC

+ configure PAT from LAN and VPN to PC network

I think first option is the easiest.

Review Cisco Networking for a $25 gift card