Link to home
Start Free TrialLog in
Avatar of isltt
isltt

asked on

Assigning vpn client ip address range

I have a class c internal lan and will be implementing vpn. I would like my vpn clients to securely access my internal resources via vpn and be able to browse internet at the same time. I've read articles that seem to suggest this is not recommended as the vpn client can become a virtual gateway into the corporate network for hackers.

My questions are:
Do I assign an offset ip address range to my vpn clients e.g use class A addresses for vpn clients to prevent users being able to surf and access vpn resources simultaneously
Do I need to assign static vpn IPs or can i get dhcp working for my vpn clients

I'm using checkpoint fwall & vpn
SOLUTION
Avatar of ahoffmann
ahoffmann
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Avatar of harbor235
harbor235
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial