Netscreen VPN question - seems strange to me... ?
From: Ade Taylor (ade_at_barrysworld.com)
Date: 05/14/03
- Previous message: mhicaoidh: "Re: Does a casual home user need a router for security?"
- Next in thread: W. B.: "Re: Netscreen VPN question - seems strange to me... ?"
- Reply: W. B.: "Re: Netscreen VPN question - seems strange to me... ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 14 May 2003 09:11:18 -0700
Hi,
I'm setting up an NS50 as a VPN concentrator for remote workers using
broadband internet connections to tunnel through to my internal
networks. The users are with a variety of ISP's and have dynamic
addresses - I'm using the Netscreen Remote client on the PC's. The
problem I have is that the only way I can get the users to see more
than one IP network on the trusted side of the NS is to create a user,
gateway, tunnel and policy for each network and have the user connect
to them all from his or her client. This works fine, but I can't help
thinking that ther must be a better way to do it? If I could get the
NS to allocate a valid internal address for the clients and spoof
traffic to and from it, then I suppose that would work, but although
that option is ostensibly available (All Internal Address under global
options in the remote client) - it doesn't work.
Any ideas anyone?
Thanks
Ade
- Previous message: mhicaoidh: "Re: Does a casual home user need a router for security?"
- Next in thread: W. B.: "Re: Netscreen VPN question - seems strange to me... ?"
- Reply: W. B.: "Re: Netscreen VPN question - seems strange to me... ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|