Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

VPN Internet Access

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Firewall] >> VPN >> VPN Internet Access Page: [1]
Login
Message << Older Topic   Newer Topic >>
VPN Internet Access - 19.Jan.2008 7:49:31 AM   
baldwb

 

Posts: 3
Joined: 17.Jan.2008
Status: offline
Hi all,

I have a 33mbit 5.8GHz wireless link established with ISA server as the firewall device. The access point is on a DMZ network and for clients to access the internal network, they establish a L2TP tunnel - which works well at this point.

I have a rule in place that prevents these VPN users from using the ISA servers internet connection and my question is: is there a way to 'loopback' so that the VPN user uses their own internet connection and not the connection through the VPN so that they can still use internet explorer, and check email, through their OWN connection?

Thanks.

< Message edited by baldwb -- 19.Jan.2008 7:51:02 AM >
Post #: 1
RE: VPN Internet Access - 20.Jan.2008 9:15:26 AM   
justmee

 

Posts: 505
Joined: 14.May2007
Status: offline
Hi baldwb,
Yeah, there is a way. But it is insecure(very in your case). It's called split tunneling.
Reading your post it looks to me that you are using an archaic and dumb(maybe I'm too harsh with this comment) way of securing your WLAN, VPN instead of focusing on securing the wireless infrastructure itself.
Am I correct in the assumption that your WLAN is unencrypted (that's why I have said very insecure) ?
Regards!

(in reply to baldwb)
Post #: 2
RE: VPN Internet Access - 21.Jan.2008 5:50:45 AM   
baldwb

 

Posts: 3
Joined: 17.Jan.2008
Status: offline
Hi there,

No, WLAN link is still encrypted with a WPA string and SSID is hidden.

BB.

(in reply to justmee)
Post #: 3
RE: VPN Internet Access - 21.Jan.2008 11:03:37 AM   
justmee

 

Posts: 505
Joined: 14.May2007
Status: offline
Hi baldwb,
What would be the reason to VPN into ISA then?
Use a proper production WLAN for accessing your Internal Net and get rid of the unnecessary VPN connections and load on ISA.
J

(in reply to baldwb)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Firewall] >> VPN >> VPN Internet Access Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts