Title: Message
Hi Saul,
 
Well, it is indeed possible, but, since we're dealing with a box-to-box VPN, both sides of the security association must be adjusted in order for it to work.  Remember, on site A you specify the allowable destination networks behind site B, and vice versa.  If you want to restrict VPN access to the network behind site A, adjust the SA on site B by restricting the destination network IP address specification. 
 
If you make the proper considerations, you could enable NAT and firewall rules for the SA on site A, then define rules to allow and deny access as you wish. 
 
Darrell Shandrow - Shandrow Communications!
Technology consultant/instructor, network/systems administrator!
A+, CCNA, Network+!
Check out high quality telecommunications services at http://ld.net/?nu7i
All the best to coalition forces carrying out Operation Iraqi Freedom!
----- Original Message -----
Sent: Monday, August 04, 2003 1:55 PM
Subject: RE: [SonicWALL]- VPN Between 2 Sonicwall boxes

 

 

-----Original Message-----
From: Saul Gonzalez
Sent: Monday, August 04, 2003 7:28 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: VPN Between 2 Sonicwall boxes

 

Okay, I am just now getting around to try this. The only problem with that is that Site B is a client of ours. I want to be able to restrict it from my end. In other words I want to control what they have access to. I called SonicWall and they said it wasn't possible. It doesn't make sense though. This should be a simple process but I can't figure it out.

Thanks

Saul

-----Original Message-----

From: Ian Moran [mailto:[EMAIL PROTECTED]]

Sent: Tuesday, June 10, 2003 08:38 AM

To: [EMAIL PROTECTED]

Subject: RE: [sonicwall] Sonicwall VPN

 

On site B define the remote subnet on site A as a host IP address - this gives access to just that one machine.

Ian Moran

Konnexion Ltd

-----Original Message-----

From: Saul Gonzalez [mailto:[EMAIL PROTECTED]]

Sent: 10 June 2003 16:34

To: [EMAIL PROTECTED]

 

Does anybody know if the following is possible

Site A and Site B are connected via VPN. I want Site B to only be able to access one IP or several different IP's on site A's network.

Is this possible?

Thanks

Saul

Reply via email to