Re: Split Tunneling in the Windows VPN Client???
- From: "Bill Grant" <not.available@online>
- Date: Thu, 22 Sep 2005 11:03:47 +1000
Why (and how) would you send local traffic through the tunnel? Local
traffic is sent "on the wire" using hardware addressing.
Whether local traffic should be blocked when the VPN is up is another
question altogether. I can't see any point in doing so myself.
Daniel Bartlett wrote:
> Is there any way to tunnel ALL network packets through an established
> VPN connection??? Checking the "Use default gateway on the remote
> network" option tunnels all remote traffic through the tunnel but as
> stated in the description of this check box, it states "data that
> cannot be sent on the local network is forwarded to the dial-up
> network". This implies that "local network" traffic does not get
> pushed through the tunnel (causing a DNS resolution issue in my case
> but irrelevant to this question!)
>
> I think this is a security flaw that should be addressed by Microsoft
> as it is still a form of split tunneling. This setting implies that
> I can still communicate with devices on my home network (local) while
> having a VPN connection established. This potentially allows someone
> on the internal network hijack my workstation while I am connected to
> the VPN. This is in my mind NOT disabling split tunneling.
>
> Cisco's VPN client implementation does enforce no split tunneling by
> forwarding ALL packets through the tunnel including any packet that
> would normally be destined for a local network. This can confuse end
> users because when connected to the VPN, they cannot even see
> anything on their home network. However, this is truely disabling
> split tunneling and should be the way it works.
>
> I am supprised the Microsoft client would allow this and I suspect
> that there may be a registry setting to forward ALL packets through
> an established tunnel and truely disable split tunneling but I have
> been unsuccessful at finding it. Any help or valid workaround would
> be greatly appreciated.
.
- Follow-Ups:
- Re: Split Tunneling in the Windows VPN Client???
- From: Daniel Bartlett
- Re: Split Tunneling in the Windows VPN Client???
- Prev by Date: Re: VPN Setup
- Next by Date: Re: Extremely slow local logon after hardware failure
- Previous by thread: Re: Remote Desktop and Network Shares across VPN
- Next by thread: Re: Split Tunneling in the Windows VPN Client???
- Index(es):
Relevant Pages
|
Loading