Cisco WS-CE500 Administration Manual page 167

Sa500 series small business security appliances
Table of Contents

Advertisement

Configuring VPN
Configuring SSL VPN for Browser-Based Remote Access
STEP 3
NOTE
NOTE
Cisco SA500 Series Security Appliances Administration Guide
Secondary DNS Server (Optional): Enter the IP address of the secondary
DNS Server for this client.
Client Address Range Begin: Enter the first IP address that will be assigned
to SSL VPN clients.
Client Address Range End: Enter the last IP address that will be assigned to
SSL VPN clients.
Configure an IP address range that does not directly overlap with any
NOTE
of addresses on your local network. For example, the default range is
192. 1 68.251. 1 to 192. 1 68.251.254.
Click Apply to save your settings.
Next steps:
If you enable Split Tunnel Support, you also will need to configure SSL VPN Client
Routes. After you complete this procedure, see
Split Tunnel Mode, page
Configuring Client Routes for Split Tunnel Mode
If Full Tunnel support is disabled on the SSL VPN Client page, then you must
configure client routes for Split Tunnel Mode.
The Configured Client Routes entries are added by the SSL VPN Client such that
only traffic to these destination addresses is redirected through the SSL VPN
tunnels, and all other traffic is redirected using the hosts (SSL VPN Clients) native
network interface. For example if the SSL VPN Client attempts to access this
device's LAN network then in Split Tunnel mode, the user should add the LAN
subnet as the Destination Network using this page.
You can configure client routes only if Split Tunnel support is enabled on the SSL
VPN Client page. See
167.
Configuring the SSL VPN Client, page
Configuring Client Routes for
166.
7
167

Advertisement

Table of Contents
loading

Table of Contents