Hi All I am looking forward for some advise in respect SSL VPN configuration. Hope to get the same via this forum. I have a scenario in which I have to access the internet web servers located outside my campus. The catch here is that I can access these websites directly from internet as well but unless I access them from a specific IP address lets say 1.1.1.1 ie my public IP, I do not get extra privileged access. SSL VPN device is installed in the DMZ Zone with IP address range say 192.168.1.0/24. Users need to come from outside ie internet. Public IP address of the SSL VPN Server is 1.1.1.5, which is natted to 192.168.1.10 (SSL VPN Device private IP address). When users access 1.1.1.5 from outside they land on SSL VPN device. A single bookmark is provided to them. This Bookmark again leads to a web page on a server in DMZ, wherein URLs to internet websites are placed. Only authentication in this whole process is configured on the SSL VPN Device. Now if I initiate a connection from inside, ie intranet, I get to same web page as hosted on the server and if I click any of the URLs provided I get the access as per required, but in case I come from internet, access the web page and click on the URL, I do not get the privileged access as per required. The main cause of problem that I had been able to ascertain is that my source IP remains the same as Public Internet IP. So when I access the web page as hosted on the server, I am not able to be NATted by the firewall to public IP address ie 1.1.1.1. whereas the expected source IP should be of the SSL VPN Server ie 192.168.1.10. Can some one advise what needs to be configured for this to be possible?? In short, I am looking for configuration ideas in which I can terminate the outside connection to SSL VPN device and reinitiate the connection to the intranet server with source IP address of my SSL VPN device. Thanks Nitin
... View more