cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
528
Views
0
Helpful
1
Replies

Internet Access Through a VPN

timpotter
Level 1
Level 1

Hello, We're looking to set up VPN's, and we already have a few in place, but our dilema is that we want to force the remote end to do all their internet access/browsing through us, and take advantage of our tracking, logging, firewall, etc. We have a 3005 on our end, and our two sites so far have a PIX 506 and a 1720. Both of these sites go out their own connection for internet access, and everything else goes though us (so this is essnetially split-tunneling) but that is not what we want. We are looking into the 3002 for some of our smaller sites. Can you hook up the 3002 and 3005 so that all the remote users (on the 3002 end) have to go out our internet connection for web access? I would think there has to be a way to make this work (via the 3002 or something else) to take advantage of centralized montioring & tracking. Let me know your thoughts!

Thanks,

-Tim

1 Reply 1

s.jankowski
Level 4
Level 4

Just lock down your PIX to block all outbound traffic except through the VPN to headquarters. Now all your users will be forced to make all their connections through headquarters and can’t get directly to the web.