I have a VPN group setup that allows the clients to connect and access everything on the internal net. I would like to set up a seperate group that hands the client a 10.43.0.1 IP address and limits it to telnet an 10.60.1.20 address. I believe I need to diasble the sysopt connection permit-ipsec, but when I do, I can connect but cannot access anything.(not even a ping). With sysopt enabled it can connect but, can go anywhere.(This is not good) Is it an ACL problem ?
Thanks,