10-15-2004 01:51 AM
Hi,
Please, can i put an access-list to deny/permit for a such vpn client to access servser. or must i put it on the "ipsec rules".
Ex: access-list outacl permit ip 10.1.198.0 10.1.32.0
vpnpool : 10.1.198.0
servers : 10.1.32.0
thanks
10-15-2004 05:47 AM
you should remove
sysopt connection permit-ipsec
sysopt ipsec pl-compatible
commands for such an access-list to have any effect.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Log in to Community