usg flexH, SSL VPN and multiple ACCESS RULES






in the old usg and usg flex it was possible to create multiple ssl vpn with differentiated accesses, allowing administrators to divide accesses based on the username that connected with their VPN credentials... now, with the new USG FLEX H, how can I create connections with differentiated accesses? the connection client I use is OpenVPn Connect..tks
All Replies
-
You should be about to control access per user with firewall rules
0 -
tks PeterUK .. I will try to understand how
0 -
I'm trying to use firewall rules to make sure that a specific user who logs in to SSL VPN can only see one server inside the structure, but the problem lies in the VPN configuration mode, at that stage I declare what users can reach inside: most can navigate throughout the internal network, but to connect the user mentioned above, I have to add him to the list of users (otherwise obviously I receive an authentication error), but in this way the rule indicated in the VPN prevails and the user navigates everywhere .. PeterUK could you give me an example of a configuration of this type? with the old USG it was very simple
0 -
Either you have a rule that allow SSL VPN to to everywhere or user control does not work?
It might be that SSL VPN is simple in FLEX H at this time.
I will try a SSL VPN setup my end to control two users that each can only access a given server and let you know.
0 -
So with SSLVPN subnet 192.168.51.0/24 and two users UserSSLVPN1 and UserSSLVPN2
I have two HTTP servers on LAN 192.168.255.193 and 192.168.255.195
with the following firewall rules
UserSSLVPN1 can connect to server 192.168.255.193 but not 192.168.255.195
UserSSLVPN2 can connect to server 192.168.255.195 but not 192.168.255.193
0 -
yes you were right Peter .. by disabling the SSL_VPN to any outgoing rule and setting the specific rule for the user, it works perfectly ... thanks a lot for the support
0
Categories
- All Categories
- 415 Beta Program
- 2.5K Nebula
- 157 Nebula Ideas
- 106 Nebula Status and Incidents
- 5.9K Security
- 327 USG FLEX H Series
- 286 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 257 Service & License
- 400 News and Release
- 86 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 87 About Community
- 78 Security Highlight