08-12-2020 07:57 AM
I am new on this setup.
Trying to set up a new VPN connection for a small group of users on AD. I am able to pick out the group but how can I restrict them to a group of computers that they can remote into? Is there a way that I can only include RDP in the VPN access rule?
Any documents or videos for DIY are welcome.
Thank you,
Shao
Solved! Go to Solution.
08-12-2020 08:05 AM - edited 08-12-2020 08:11 AM
Hi,
You could apply a Downloadable ACL (DACL) in an ISE Authorisation rule to those users in that group that permits them access only to the server(s).
This example demostrates how to configure a DACL in ISE (you can ignore the Posture configuration).
https://www.petenetlive.com/KB/Article/0001155
HTH
08-12-2020 08:05 AM - edited 08-12-2020 08:11 AM
Hi,
You could apply a Downloadable ACL (DACL) in an ISE Authorisation rule to those users in that group that permits them access only to the server(s).
This example demostrates how to configure a DACL in ISE (you can ignore the Posture configuration).
https://www.petenetlive.com/KB/Article/0001155
HTH
08-14-2020 04:24 AM
Thank you Rob. That is what I needed to get this small project started.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide