![Juniper NETWORK AND SECURITY MANAGER Manual Download Page 177](http://html1.mh-extra.com/html/juniper/network-and-security-manager/network-and-security-manager_manual_2032862177.webp)
Defining Network Connect Split Tunneling Policies (NSM Procedure)
Network Connect (NC) split tunneling policies specify one or more network IP
address/netmask combinations for which the device handles traffic passed between
the remote client and the corporate intranet. You can also specify traffic that should not
pass through the NC tunnel.
When split-tunneling is used, NC modifies routes on clients so that traffic meant for the
corporate intranet networks to NC and all other traffic goes through the local physical
adapter. The IVE tries to resolve all DNS requests through the physical adapter first and
then routes those that fail to the NC adapter.
For example,
•
If split tunneling is disabled and the exclude route contains 10.204.50.0/24, then all
traffic except 10.204.50.0 networks will go through NC.
•
If split tunneling is enabled and the included route contains 10.204.64.0/18 and the
exclude traffic contains 10.204.68.0/24, networks from 10.204.64.0/18 to
10.204.127.0/18 will pass through the NC tunnel. The 10.204.68.0/24 network will not
pass through the NC tunnel.
•
If split tunneling is enabled and the include route contains 10.204.64.0/24 (subnet of
the excluded route), and the exclude route contains 10.204.64.0/18 (super set of the
included route), then the included network’s traffic will still be routed through the NC
tunnel.
To write an NC split-tunneling networks resource policy:
1.
In the navigation tree, select
Device Manager
>
Devices
. Click the
Device Tree
tab,
and then double-click the Secure Access device for which you want to write an NC
split-tunneling networks resource policy.
2.
Click the
Configuration
tab. Select
Users
>
Resource Policies
>
Network Connect
>
Split-tunneling Networks
.
3.
Click
New Profile
, and then enter the name and the description for the policy.
4.
Add or modify more settings as specified in Table 39 on page 159.
5.
Click one:
•
OK
—Saves the changes.
•
Cancel
—Cancels the modifications.
Table 39: Configuring Network Connect Split Tunneling Policy Details
Your Action
Options
Enter the new resource name for the split tunnel resource policy.
Resources
159
Copyright © 2010, Juniper Networks, Inc.
Chapter 10: Configuring Secure Access Resource Policies
Summary of Contents for NETWORK AND SECURITY MANAGER
Page 6: ...Copyright 2010 Juniper Networks Inc vi...
Page 12: ...Copyright 2010 Juniper Networks Inc xii Configuring Secure Access Devices Guide...
Page 18: ...Copyright 2010 Juniper Networks Inc xviii Configuring Secure Access Devices Guide...
Page 20: ...Copyright 2010 Juniper Networks Inc 2 Configuring Secure Access Devices Guide...
Page 28: ...Copyright 2010 Juniper Networks Inc 10 Configuring Secure Access Devices Guide...
Page 40: ...Copyright 2010 Juniper Networks Inc 22 Configuring Secure Access Devices Guide...
Page 46: ...Copyright 2010 Juniper Networks Inc 28 Configuring Secure Access Devices Guide...
Page 50: ...Copyright 2010 Juniper Networks Inc 32 Configuring Secure Access Devices Guide...
Page 52: ...Copyright 2010 Juniper Networks Inc 34 Configuring Secure Access Devices Guide...
Page 82: ...Copyright 2010 Juniper Networks Inc 64 Configuring Secure Access Devices Guide...
Page 110: ...Copyright 2010 Juniper Networks Inc 92 Configuring Secure Access Devices Guide...
Page 154: ...Copyright 2010 Juniper Networks Inc 136 Configuring Secure Access Devices Guide...
Page 224: ...Copyright 2010 Juniper Networks Inc 206 Configuring Secure Access Devices Guide...
Page 234: ...Copyright 2010 Juniper Networks Inc 216 Configuring Secure Access Devices Guide...
Page 288: ...Copyright 2010 Juniper Networks Inc 270 Configuring Secure Access Devices Guide...
Page 300: ...Copyright 2010 Juniper Networks Inc 282 Configuring Secure Access Devices Guide...
Page 310: ...Copyright 2010 Juniper Networks Inc 292 Configuring Secure Access Devices Guide...
Page 312: ...Copyright 2010 Juniper Networks Inc 294 Configuring Secure Access Devices Guide...
Page 320: ...Copyright 2010 Juniper Networks Inc 302 Configuring Secure Access Devices Guide...
Page 322: ...Copyright 2010 Juniper Networks Inc 304 Configuring Secure Access Devices Guide...
Page 337: ...PART 6 Index Index on page 321 319 Copyright 2010 Juniper Networks Inc...
Page 338: ...Copyright 2010 Juniper Networks Inc 320 Configuring Secure Access Devices Guide...
Page 340: ...Copyright 2010 Juniper Networks Inc 322 Configuring Secure Access Devices Guide...