10-14-2004 07:57 AM - edited 02-21-2020 01:23 PM
Hi,
I have a vpn concentrator 3015, and many software vpn clients, my question is:
Can the vpn concentrator send a broadcast from a computer in my local network (LAN) to the vpn clients
Thanks
10-17-2004 12:50 AM
Yes.. this is definitely possible.. Since all the VPN clients have an address from the local Pool, it shows as directly connected networks on the routing table of the concentrator.. This can force the concentrator to broadcast the traffic to all directly connected networks..
You can think of 2 things under this scenario:
1) If you are using a normal client, be sure you enable the firewall feature of the client. The concentrator can push the firewall policies to the client, which can deny such unnecessary requests...
2) You can think of enabling web vpn on the concentrator. When you use web vpn, the concentrator does not allocate any IP address when the client connects, which means there is no information of the client on the concentrators routing table.. this can avoid the concentrator broadcasting the packets to the connected clients.
hope this helps
10-18-2004 06:01 AM
Hi,
You say that it is possible, so what can I do to configure it??
Thanks
10-27-2004 02:15 AM
Hello
for configuring web vpn ,you need to upgrade your VPN concentrator to the latest OS. you can then refer to cisco's documentation to configure it.
To configure the firewall policy , you need to configure filters and apply it on the VPN concentrator group policy. The policies are pushed onto the client once it gets connected. enable split tunneling if needed.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide