Assuming a simple IPSec VPN like this:
|LAN1|-----|PIX1|-------|PIX2|----|LAN2|
I was wondering whether the following is possible:
LAN1 computers will access LAN2 computers, but LAN2 computers will not be able to access LAN1 computers.
With routers, using the TCP established feature, it is possible to do this.
Can someon suggest a way of achieving this without placing a filtering device behind PIX1?
thanx