NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
chiragk11
Nov 23, 2016Aspirant
Restrict User to VLAN after VPN - Not working
Hello, On SRX5308 I have created a IPSec VPN connection using Mode Config and IKE policy. I am able to VPN in. However, I can access all Subnets - even though I have specified the Subnet as 10.5...
chiragk11
Nov 23, 2016Aspirant
FYI - I am using Shrew VPN client.
In the Shrew VPN Client, I noticed that if I have the DNS set to 10.50.10.1, then it works as desired.
However if the DNS is left as "automatic", then the entire network is open to the VPN user. so even though the setting above solves the issue, its a huge security hole, and since DNS Automatic is the default setting, we cannot do this.
I need to be able to enforce the DNS to 10.50.10.1 to the VPN user using Mode Config (I suppose)....
Please advise..
chiragk11
Nov 23, 2016Aspirant
Never mind the last post #2. It seemed to work when I first connected, but after a minute, I was able to access entire network - so I back to square 1.
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!