Link to home
Start Free TrialLog in
Avatar of Christian_Agard
Christian_AgardFlag for Trinidad and Tobago

asked on

Limiting VPN Access to only a small section of the network

How Can I limit VPN Access to a small section of my network, in fact I just want users coming in on VPN to access just one machine once they gain entrance into the network.

Thanks
SOLUTION
Avatar of gabeso
gabeso
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Christian_Agard

ASKER

I use ISA2000, and the VPN client from ISA2000.
I created a testusername and it can connect via the VPN, but I saw no where on the Firewall to limit the connection to one machine.

Any ideas?
I was thinking more of a separate firewall device - it's more secure and easier to configure.

However if you are working with the Microsoft setup that you have... is it not possible to use Active Directory to deny these users access to any of these hosts - something like create a group for all of the vpn users and then make sure that they are only allowed access to the permitted host and denied access to others?
Avatar of victornegri
victornegri

What VPN are you using? Microsoft? Cisco? etc? On some VPN setups, you can define the destination network. You can enter a subnet mask of 255.255.255.255 to limit their connection to one IP.
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Hey thanks guys!!! I am very glad to have been able to participate and I very much appreciate the generous points awarded...hope to see you all again soon.