cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
844
Views
0
Helpful
3
Replies

New to SSL VPN, Can I tunnel specific networks without specifying application list with Smart tunnels??

rrobles007
Level 1
Level 1

Hello,

I'm brand new to SSL VPN and I'm a bit lost... I've been trying to get SSL VPN going for our company and we've been asked to deploy a completely client-less solution that will allow access to our network based on subnets. Is that possible with smart-tunnels? I've tried a few different configurations and it doesnt seem to be working. It works with ANYCONNECT but we need to go clientless. They are under the impression we can do clientless access to destination networks. Is this possible?

thank you in advance..

1 Accepted Solution

Accepted Solutions

oszkari
Level 1
Level 1

This is what you can do with a clientless solution:

  1. Allow access to web resources (using url-list)
  2. Allow access to TCP based application (using java port-forwarding or smart tunnels)

If you have  to give access to entire subnets, then you will need to go with full SSL tunnelling which is Anyconnect.

HTH

View solution in original post

3 Replies 3

oszkari
Level 1
Level 1

This is what you can do with a clientless solution:

  1. Allow access to web resources (using url-list)
  2. Allow access to TCP based application (using java port-forwarding or smart tunnels)

If you have  to give access to entire subnets, then you will need to go with full SSL tunnelling which is Anyconnect.

HTH

Thank you VERY much!!! thats what I was guessing but always helps to get an experienced answser..

You can add subnets with smart tunnel policy for all applications if you add *.exe

Smart tunnels on Cisco ASA