VPN Into Specific Subnetworks

Hello All,
Im trying to set this up in my test environment before I tell a friend they can do this.
Lets say we have a router, 7204 w/ NPE-200.
FA0/0 is configured with a /28 from an ISP
FA1/0 is configured with multiple /24's for internal use (10.5.0.0/24 for example).
Each subnetwork (10.[1-5].0.0/24) has separate systems connected to the router for NAT translation, trunked over 802.1q into a switch, where that is transported over to servers.
We want to create a Remote Access scenario in which a user will be able to connect and their laptop/desktop will be assigned the correct subnetwork they are allowed access to. BUT if we cant do that, then we are ok with creating our own "VPN Subnetwork," where the user receives an address of 10.99.0.0/24 but comes in the question of locking down that specific user to networks (and possibly hosts) he should have access to.
Heres what I have been able to gather.
1) Local Authentication will work, but AFAIK you cant specifiy ACLs for specific users once they are connected?
2) RADIUS/TACACS/AAA maybe our best bet of customizing the per-user connections.
Let me know how I should approach this remote access scenario.
Thanks,
Israel

Hi,
just a thought on point 1)Local Authentication
You can apply an ACLs to a group-policy, the group-policy to a connection profile and the connection profile or the group-policy to a local user:
username myuser attributes
vpn-group-policy mygrouppolicy
group-lock value myconnectionprofile
service-type remote-access
Regards
D.

Similar Messages

  • Copy cells from next filled row into specific cells

    Hi guys, 
    I am trying to generate unique named forms based on a master list of names. What I need to do is to extract information from the master list into specific cells of the form, and save the file under unique file names, such that each name in the master list
    have their own forms to look at. 
    I am unsure how I can run a macro to copy information from the master list, from the next filled row into the form. I find a lot of information on the reverse process instead, any advice?

    Hi John, 
    I've extracted data from my system such that i have data in 4 columns, name, ID, Designation, and Date attending course. This is the master list. 
    After the course, I would like their direct supervisor to carry out a review with them. So I have done up a form.
    I will like to customize each form such that the supervisor will receive the files with the above four fields filled up, and they can focus on working on the review. 
    I can choose to input them one by one, but i have a total of about 600 attendees, which makes it tedious and inefficient if I input them one file by one file. So I'm wondering if there is a macro to run to generate 600 different files, saved to the staff's
    names with the necessary information being input before the review. 
    Please advise. 
    Thank you. 

  • Can I use Dreamweaver to import data into specific fields on a website?

    We need to build a website that will allow us to import data from an existing database, into specific fields on website (desktop and mobile).  Is it possible to do that in Dreamweaver?

    Ben answered your question. You asked if one CAN use DW to call data. Just understand that it isn't necessary to use DW for this, and there are good reasons not to.
    Using a plug-in or data behaviors allows you to get up and running quickly, but they are like training wheels on a bicycle. Eventually they cripple your capabilities and you have to go back to the beginning to learn how to do things right, which means making the connections and writing the code yourself. Why not just do it the right way from the start?
    If you script the database connections and queries yourself, you can still work within DW.
    You did not specify which kind of server, database or scripting language you plan to use. The typical configuration is MySQL database and PHP scripting on Linux.

  • Wireless printing does not work when VPN into network (officejet 4500)

    Officejet 4500 G510n
    I print with wireless, which works fine,
    Until I VPN into the network (which is most of the day) at which point printer shows offline.
    To print what is in the que, I have to log out of the network, wait for it to print, then log back in.
    Is there a fix for this?

    Hi,
    Thank you for your reply.
    For that you will have to contact your network administrator, ask them to grant you access to use the resources on the local network when you are connected to  the VPN. So that you can use the printer, when you are connected to the VPN.
    As I Said earlier, when you are connected to the VPN you completely on a different network (Office Network) and you are disconnected from your local network. Your local network will just be acting as a bridge.
    Say "Thanks" by clicking the Kudos Star in the post that helped you.
    Please mark the post that solves your problem as "Accepted Solution"
    (Although I am employed by HP, I am speaking for myself and not for HP)

  • STUMPED! VPN into ASA5510 not working

    Trying to setup remote vpn into a 5510, ran through the wizard, have the preshare and usernames, along with the pool configured. No errors when uploaded, but the Cisco VPN client does not connect at all, Reason 412. I have all crypto debugs running and I got nothing when I try to connect. If I had fat fingered the preshare or the username, I would at least think I would see some debug info when I tried to connect, but I got nothing. I have done this type of setup via the CLI on PIX and have not had problems, but I am not familiar with the new commands, and all I can find are stinking gui examples.

    Well, I rebuilt from scratch through CLI, and at least now I have some debug output, but still stumped. Still get the same error with the client.
    Jun 06 15:05:37 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Removing peer from peer table failed, no match!
    Jun 06 15:05:37 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Error: Unable to remove PeerTblEntry
    Jun 06 15:05:42 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Removing peer from peer table failed, no match!
    Jun 06 15:05:42 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Error: Unable to remove PeerTblEntry
    Jun 06 15:05:47 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Removing peer from peer table failed, no match!
    Jun 06 15:05:47 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Error: Unable to remove PeerTblEntry
    Jun 06 15:05:52 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Removing peer from peer table failed, no match!
    Jun 06 15:05:52 [IKEv1]: Group = DefaultRAGroup, IP = 10.15.1.121, Error: Unable to remove PeerTblEntry

  • How to manage the regulatory data import into specification database?

    Hi experts,
    We have a EH&S implementation project for a distribution company which has no other sap module and very limited scope.
    They want to get the 3E data, compare and update and send/updates with vendors and customers and also inteface the data with AS 400.
    They are not willing to use  the Ariel ADM tool and any other additional licensing, due to limited scope.The 3E is sending the file in xml format. So the EH&S OCC connector could be used. but this again needs the use of ehs expert, which needs additional licensing and scope increase.
    Does anybody worked on intergrating 3E data into specifications without usig ADM and OCC?
    Regards
    Milmuk

    Thanks C.B.
    Our requirement is just to import the regulatory data for the compliance check from 3E. Once the data gets captured in specification property tree, we can utilize it further. We don't have the scope and resources to make a complex design.
    If the specification system could be able to receive the regulatory content in any other file format, we can ask 3E to provide the files in that format ( if possible). As I understand,the standard systems used are IMDS or OCC or Ariel ADM. IMDS also seems to have a separate license.
    Does anybody worked on integrating 3E/regulatory  data into specifications without using ADM and IMDS? ( very much using the standard SAP out of the box functionality). We are using ECC 6 with EhP 5.
    Regards
    Milmuk

  • How do I save emails into specific folders in my Documents, NOT in the email account folders?

    How do I save emails in a specific folder in my Documents, NOT in the email account folders.
    Thx,
    Beginner

    Open the email, do a save as have it save to the location you want from the drop down menu (You could select desktop and then drag it into a folder in documents) and click save as a .rtf.
    Or you can copy and paste into a document (Word, Pages, Text Edit...) Make a folder and put it in docs.

  • Import a CSV file into specific cells

    Hello,
    I have created a simple Numbers template and I want to import a csv file with its values entering specific cells in an automated way.
    I think the best way to automate this process would be an AppleScript that does the following:
    Selects the csv file;
    Parses the values inserting them into the the Numbers template i.e. value1 to cell B2, value2 to cell B3 etc.
    Unfortunately I know very little about AppleScript, does anyone have any experience in this area that they could pass on?
    My idea would be to place the csv values in an array, and loop through the array entering the values in B2, B3 etc.
    Many thanks in advance!
    Dougie

    Here is a script doing the full job in a single call.
    --{code}
    --[SCRIPT csv-to-selected-cell]
    Enregistrer le script en tant que Script : csv-to-selected-cell.scpt
    déplacer le fichier ainsi créé dans le dossier
    <VolumeDeDémarrage>:Utilisateurs:<votreCompte>:Bibliothèque:Scripts:Applications :Numbers:
    Il vous faudra peut-être créer le dossier Numbers et peut-être même le dossier Applications.
    Sélectionner la première cellule du bloc où vous souhaitez insérer les valeurs extraites d'un fichier CSV.
    Aller au menu Scripts , choisir Numbers puis choisir “csv-to-selected-cell”
    Le script demande de naviquer jusqu’au fichier CSV.
    Il en lit le contenu,
    remplace les séparateurs (";" ou ",") par des TABs
    copie les données dans le presse-papiers
    colle dans la table.
    --=====
    L’aide du Finder explique:
    L’Utilitaire AppleScript permet d’activer le Menu des scripts :
    Ouvrez l’Utilitaire AppleScript situé dans le dossier Applications/AppleScript.
    Cochez la case “Afficher le menu des scripts dans la barre de menus”.
    Sous 10.6.x,
    aller dans le panneau “Général” du dialogue Préférences de l’Éditeur Applescript
    puis cocher la case “Afficher le menu des scripts dans la barre des menus”.
    --=====
    Save the script as a Script: csv-to-selected-cell.scpt
    Move the newly created file into the folder:
    <startup Volume>:Users:<yourAccount>:Library:Scripts:Applications:Numbers:
    Maybe you would have to create the folder Numbers and even the folder Applications by yourself.
    Select the first cell of the block where values extracted from a CSV file must be inserted.
    Go to the Scripts Menu, choose Numbers, then choose “csv-to-selected-cell”
    The script urge you to navigate to the CSV file.
    It read its contents,
    replace the delimiters (";" or ",") by TAB  chars
    copy the datas in the clipboard
    paste in the table.
    --=====
    The Finder’s Help explains:
    To make the Script menu appear:
    Open the AppleScript utility located in Applications/AppleScript.
    Select the “Show Script Menu in menu bar” checkbox.
    Under 10.6.x,
    go to the General panel of AppleScript Editor’s Preferences dialog box
    and check the “Show Script menu in menu bar” option.
    --=====
    Yvan KOENIG (VALLAURIS, France)
    2012/01/18
    --=====
    on run
              local dName, sName, tName, rowNum1, colNum1, rowNum2, colNum2, lesValeurs
              my activateGUIscripting()
    Extract parameters describing the target cell *)
              set {dName, sName, tName, rowNum1, colNum1, rowNum2, colNum2} to my get_SelParams()
    Choose the source CSV file *)
      choose file of type {"csv"}
    Get the file’s contents *)
              set lesValeurs to read result
    Grab the delimiter in use *)
              if lesValeurs contains ";" then
              else
              end if
    Replace the delimiter in use by TAB *)
              my remplace(lesValeurs, result, tab)
    Move the 'normalized' datas to the clipboard *)
      set the clipboard to result
    Reset the target cell in case something changed *)
              tell application "Numbers" to tell document dName to tell sheet sName to tell table tName
                        set selection range to range (name of cell colNum1 of row rowNum1)
              end tell
    Paste matching style *)
              my raccourci("Numbers", "v", "cas")
    end run
    --=====
    set { dName, sName, tName,  rowNum1, colNum1, rowNum2, colNum2} to my get_SelParams()
    tell application "Numbers" to tell document dName to tell sheet sName to tell table tName
    on get_SelParams()
              local d_Name, s_Name, t_Name, row_Num1, col_Num1, row_Num2, col_Num2
              tell application "Numbers" to tell document 1
                        set d_Name to its name
                        set s_Name to ""
                        repeat with i from 1 to the count of sheets
                                  tell sheet i to set maybe to the count of (tables whose selection range is not missing value)
                                  if maybe is not 0 then
                                            set s_Name to name of sheet i
                                            exit repeat
                                  end if -- maybe is not 0
                        end repeat
                        if s_Name is "" then
                                  if my parleAnglais() then
                                            error "No sheet has a selected table embedding at least one selected cell !"
                                  else
                                            error "Aucune feuille ne contient une table ayant au moins une cellule sélectionnée !"
                                  end if
                        end if
                        tell sheet s_Name to tell (first table where selection range is not missing value)
                                  tell selection range
                                            set {top_left, bottom_right} to {name of first cell, name of last cell}
                                  end tell
                                  set t_Name to its name
                                  tell cell top_left to set {row_Num1, col_Num1} to {address of its row, address of its column}
                                  if top_left is bottom_right then
                                            set {row_Num2, col_Num2} to {row_Num1, col_Num1}
                                  else
                                            tell cell bottom_right to set {row_Num2, col_Num2} to {address of its row, address of its column}
                                  end if
                        end tell -- sheet…
                        return {d_Name, s_Name, t_Name, row_Num1, col_Num1, row_Num2, col_Num2}
              end tell -- Numbers
    end get_SelParams
    --=====
    on parleAnglais()
              local z
              try
                        tell application "Numbers" to set z to localized string "Cancel"
              on error
                        set z to "Cancel"
              end try
              return (z is not "Annuler")
    end parleAnglais
    --=====
    on decoupe(t, d)
              local oTIDs, l
              set oTIDs to AppleScript's text item delimiters
              set AppleScript's text item delimiters to d
              set l to text items of t
              set AppleScript's text item delimiters to oTIDs
              return l
    end decoupe
    --=====
    replaces every occurences of d1 by d2 in the text t
    on remplace(t, d1, d2)
              local oTIDs, l
              set oTIDs to AppleScript's text item delimiters
              set AppleScript's text item delimiters to d1
              set l to text items of t
              set AppleScript's text item delimiters to d2
              set t to "" & l
              set AppleScript's text item delimiters to oTIDs
              return t
    end remplace
    --=====
    on activateGUIscripting()
      (* to be sure than GUI scripting will be active *)
              tell application "System Events"
                        if not (UI elements enabled) then set (UI elements enabled) to true
              end tell
    end activateGUIscripting
    --=====
    ==== Uses GUIscripting ====
    This handler may be used to 'type' text, invisible characters if the third parameter is an empty string.
    It may be used to 'type' keyboard raccourcis if the third parameter describe the required modifier keys.
    I changed its name « shortcut » to « raccourci » to get rid of a name conflict in Smile.
    on raccourci(a, t, d)
              local k
      activate application a
              tell application "System Events" to tell application process a
                        set frontmost to true
                        try
                                  t * 1
                                  if d is "" then
      key code t
                                  else if d is "c" then
      key code t using {command down}
                                  else if d is "a" then
      key code t using {option down}
                                  else if d is "k" then
      key code t using {control down}
                                  else if d is "s" then
      key code t using {shift down}
                                  else if d is in {"ac", "ca"} then
      key code t using {command down, option down}
                                  else if d is in {"as", "sa"} then
      key code t using {shift down, option down}
                                  else if d is in {"sc", "cs"} then
      key code t using {command down, shift down}
                                  else if d is in {"kc", "ck"} then
      key code t using {command down, control down}
                                  else if d is in {"ks", "sk"} then
      key code t using {shift down, control down}
                                  else if (d contains "c") and (d contains "s") and d contains "k" then
      key code t using {command down, shift down, control down}
                                  else if (d contains "c") and (d contains "s") and d contains "a" then
      key code t using {command down, shift down, option down}
                                  end if
                        on error
                                  repeat with k in t
                                            if d is "" then
      keystroke (k as text)
                                            else if d is "c" then
      keystroke (k as text) using {command down}
                                            else if d is "a" then
      keystroke k using {option down}
                                            else if d is "k" then
      keystroke (k as text) using {control down}
                                            else if d is "s" then
      keystroke k using {shift down}
                                            else if d is in {"ac", "ca"} then
      keystroke (k as text) using {command down, option down}
                                            else if d is in {"as", "sa"} then
      keystroke (k as text) using {shift down, option down}
                                            else if d is in {"sc", "cs"} then
      keystroke (k as text) using {command down, shift down}
                                            else if d is in {"kc", "ck"} then
      keystroke (k as text) using {command down, control down}
                                            else if d is in {"ks", "sk"} then
      keystroke (k as text) using {shift down, control down}
                                            else if (d contains "c") and (d contains "s") and d contains "k" then
      keystroke (k as text) using {command down, shift down, control down}
                                            else if (d contains "c") and (d contains "s") and d contains "a" then
      keystroke (k as text) using {command down, shift down, option down}
                                            end if
                                  end repeat
                        end try
              end tell
    end raccourci
    --=====
    --[/SCRIPT]
    --{code}
    Yvan KOENIG (VALLAURIS, France) mercredi 18 janvier 2012
    iMac 21”5, i7, 2.8 GHz, 12 Gbytes, 1 Tbytes, mac OS X 10.6.8 and 10.7.2
    My Box account  is : http://www.box.com/s/00qnssoyeq2xvc22ra4k
    My iDisk is : http://public.me.com/koenigyvan

  • How to copy HDD (MP3)Folders directly into specific iTunes Folders ?

    I want to import specific music folders from my HDD into specified iTunes folder but I only can import the content of specified folders into the iTunes music library, then I have to manually copy them into the specified iTunesFolders or Playlists.
    Any way to import folder from my HDD directly into iTunes Folders/Playlists ????

    Hello Paul, welcome to discussions.
    When the folders are copied to itunes and ipod, these folders are ignored, creating a big pile of mp3-files.
    Sounds to me like your MP3 files are missing all of the data in the ID3 tags. If this is the case, then I can understand how your collection is not properly organized in iTunes.
    If you are in fact missing the ID3 info... then any MP3 player is going to do the same thing to your collection. Just about every piece of audio software and every MP3 player that I know of relies on the ID3 tags to organize music.
    I doubt any of them are going to rely on your folder structure and file names for organization.

  • Breakdown of costs into specific GL Accounts on Sales Order

    So, here's what I understand from the client. They have the cost of production from Raw Materials to Finished Goods and will be setting up in the system on the production side by the breakdown of all costs. The question is, when a sale is made, can we post some or all of these specific costs into respective GL accounts? I am not still very clear on the requirement as such, but it was drafted by someone prior to me. I am just preparing to understand this scenario in terms of how we can do this in the system. Any help is appreciated. Thanks in advance!

    Hi
    When we make sales we can charge cost of goods sold to relevant GL by making account determination assignment in OBYC and accounting entry takes place at the time of PGI. We can charge material's cost price in one G/L here. If your query to break this cost in different GLs and post, then I must say that this is not possible. System only posts materials cost price which comes from material master data.
    Understand your client's query in detail and see if this is what they are seeking for.
    Thank$

  • Workaround for not having a static IP address? Just need to VPN into server

    I work from home, and so do my partners. I recently bought a mac mini server, so that we will have 1 central computer where all the projects are stored. Now with me being a mobileme user, I of course have access to it no matter where I go. But for my partners, I need to provide them with VPN access so they can get to/store files on the server.
    In order to do that, of course, I'm going to need a static IP address. Problem is, mediacom (worst service imaginable for ISP) won't provide a static IP address unless I upgrade to a business account. No thanks, dont feel like spending $80+ for only needing the static IP.
    So I guess my question is this: Is there a way to get around using a static IP address? Any 3rd party software solutions, online services, etc available to me? I consider myself a novice, as I'm being forced into the position of being the "expert" on this now.
    Thanks in advance for your help!
    Noah

    You need to use a dynamic DNS service. Check out http://www.dyndns.com for their free service. Others exist. Use Google and search for dynamic DNS. This will keep your host name in line with your changing IP address.
    Hope this helps

  • Copying clip/sequence into specific folder in another project?

    Hi,
    I have two suites working in different projects but im having to copy sequences from one to another....
    Is there a way to copy to a specific folder as they have a lot of rushes folders so need to close all those before doing this
    cheers

    Its actually sequences but yeah the media for it is on a shared network....its just the projects that are on seperate computer.
    We have a craft editor working and a logger so im just getting sequences off the logger to be copied into the main edit.
    Ideally want to be able to select a folder right click and paste in that folder...

  • Trace by sql_id into specific file

    Hi,
    I would like to trace system by a sql_id, but to have results for that sql_id into a specific/given file.
    Is it possible? I know how to trace sqlid on a system level, but don't want to search for it among hundreds of files when needed..
    it's 11.2g database..
    tnx

    Dario Botkuljak wrote:
    Hi,
    I would like to trace system by a sql_id, but to have results for that sql_id into a specific/given file.
    Is it possible? I know how to trace sqlid on a system level, but don't want to search for it among hundreds of files when needed..
    it's 11.2g database..
    tnx
    might solution be OS dependent?
    How do I ask a question on the forums?
    https://forums.oracle.com/message/9362002#9362002

  • HT4628 Trouble getting into specific networks in network preferences

    When I enter network preference, click Advanced, and try to double click on a network name to get into the security of a specific network, nothing happens when I double click. I used to double click, and the window would come up with the security settings, and I could change the password, etc. Why isn't this working? Pressing "return" doesn't do anything either. Thanks ahead of time for your time in helping me out!

    I don't know what you deleted; I didn't advise you to delete anything. You may need to restore one or both of the following items from your backups. The first is in your home folder. Restore the second item only if you were prompted for your administrator password, and entered it. After restoring, log out and log back in.
    ~/Library/Keychains/login.keychain
    /Library/Keychains/System.keychain

  • New iPhone contact into specific MobileMe addressbook group?

    Hello,
    I want to add a new contact, on the iPhone, directly into a specific group. It works at the moment by setting the sync via iTunes (which defaults any new iPhone contact into the group we want.
    Can it be set to do the same with MobileMe?
    Thanks
    (I'm not sure if we'll just use iTunes or go via MobileMe... it's easy enough to plug in the iPhone, just seems more convenient via MobileMe)

    On the Mac I just created a group in the Address book. It automatically syncs to the iPhone and to MobileMe. Sorry, I don't know if Windows' Outlook syncs a contact group to the iPhone (or to MobileMe).
    It's a pity there's no FAQ discussing the limitations of syncing, and the differences between syncing via iTunes and syncing via MobileMe.

Maybe you are looking for