Solved

pptp vpn user must be limited only to access 2 ip addresses

Posted on 2011-02-21
2
274 Views
Last Modified: 2012-05-11
Hi all,

I'm looking for a solution. We have a external company who installed a pc with plc controllers.
The need to maintain them and connect to them.
We need to give VPN access to them.
But we don't want this company to be able to connect to other ip addresses on our network.
Hence they could do a lot of things wrong. And we don't want that.

So, how can this be done?
We also have ISA server setup for VPN but I don't seem to find a solution to bind a user to specific IP addresses
0
Comment
Question by:osa2
2 Comments
 
LVL 51

Expert Comment

by:Keith Alabaster
Comment Utility
You cannot bind a specific user to an IP address.

One option is to use RDP for the two users rather than vpn. Each user can be pointed at a workstaion internally that is locked down to what you want them to have access to.
0
 
LVL 29

Accepted Solution

by:
pwindell earned 500 total points
Comment Utility
1. You have to create an Account on your Domain for them to use.  Create a unique Group to go along with it and place the Account into that Group. Make that group the Default Group for that Account and then remove the Account from Domain Users Group.   Make sure the Account has Remote Access or "Dial-in" rights.

2. Create a User Object on the ISA to place the User Account (or its Group) in.

3. Create an Address Set containing the IP#s you want them to Access

4. Create an Access Rule as:

From: VPN Users
To: <aforementioned Address Set>
Users: <aforementioned User Set>
Protocols: <whatever>

5. Make sure that this Access Rule is above the other VPN Access Rule in the Rule list.  

6. Your other VPN Access Rules should also use a User Set that does not contain this user as an extra measure.      Do not allow VPN Access Rules to be anonymous ("All Users").
0

Featured Post

NetScaler Deployment Guides and Resources

Citrix NetScaler is certified to support many of the most commonly deployed enterprise applications. Deployment guides provide in-depth recommendations on configuring NetScaler to meet specific application requirements.

Join & Write a Comment

In this article, I'll explain how to setup a Plex Media Server (https://plex.tv/) on a Redhat (Centos) 7 based NAS with screenshots to help those looking for assistance.  What is Plex? If you aren't familiar with Plex, it’s a DLNA media serv…
If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
How to install and configure Citrix XenApp 6.5 - Part 1. In this video tutorial we have explained step by step installation of Citrix XenApp 6.5 Server on Windows Server 2008 R2 is explained in this video. We have explained the difference between…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now