Friday, November 16, 2018

Selective Split Tunneling using Windows VPN RRAS / SSTP

Hi Folks,

I've been experimenting with Windows built-in VPN Client to replace Cisco's IPSEC VPN client which is no longer supported.

The feature I'm lacking (besides mobile device support) is selective split tunneling, or the ability to inject routes to a VPN Client deice.

My Goal : All Company Subnets can be routed to/from a Windows SSTP VPN Client but public Internet Access from the connected client does *not* go through the VPN tunnel.

The VPN client settings appear to be route everything through the Tunnel, or route only the one subnet that is assigned to DHCP.

Am I missing something here, or can anyone suggest a way of acomplishing this? It was very easy using Cisco, with an Access-List defining the Split-tunneling subnets.

thanks



No comments:

Post a Comment