No, by design. We do not want them to have internet access while connected to the VPN.
We'd like to "deny" connections to public IP addresses/websites for the VPN client network as well. As described above, the ASA is "building" outside connections but they time out...we'd like to "deny" these connections from being built from the start.
Main Topics
Browse All Topics





by: lrmoorePosted on 2009-10-09 at 18:12:44ID: 25540195
Do you have split tunneling enabled for the VPN clients?