[c-nsp] Force web traffic across VPN

Bruce Pinsky bep at whack.org
Wed Oct 26 16:41:43 EDT 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Bob Fronk wrote:
> We use several 831 and 1751 routers to VPN to our PIX  (Network
> Extension mode).  
> 
>  
> 
> The remote sites have 1 to 5 users and we use DSL or Cable to connect
> the office to the Internet.  We wish to force all web browsing traffic
> to go through the VPN tunnel for web monitoring and filtering purposes.
> Is there a way to do this?  If so, I have not been able to find it.
> 
>  

So you only want HTTP (port 80) traffic to go through the tunnel?  If so,
you could use Policy Based Routing to force that traffic over the tunnel
and let all the other traffic be forwarded based on the normal routing table.

http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a00800c75d2.html

- --
=========
bep

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (MingW32)

iD8DBQFDX+oHE1XcgMgrtyYRAiVKAKCjOnSxjmSk8sFSIFDLHuSoaFSInwCgwcAN
NtYPwHaLOMAXtJv4KqyT0R4=
=rUHV
-----END PGP SIGNATURE-----


More information about the cisco-nsp mailing list