VPN
Configuring IPsec Remote Access
Cisco ISA500 Series Integrated Security Appliances Administration Guide
311
8
NOTE:
An address object with the range 192.168.3.2 to 192.168.3.254 called
“EZVPN_VPNGroup1” will be automatically created.
STEP 2
If only a single WAN interface is configured, go to the Firewall > NAT > Advanced
NAT page to create an advanced NAT rule as follows.
STEP 3
If two WAN interfaces are configured, go to the Firewall > NAT > Advanced NAT
page to create two advanced NAT rules as follows.
Mode
Client
Pool Range for Client
LAN
Start IP: 192.168.3.2
End IP: 192.168.3.254
Client Internet
Access
Disable
WAN Failover
On
Field
Setting
Field
Setting
Name
VPNClient_to_WAN1
Enable
On
From
Any
To
WAN1
Original Source
Address
EZVPN_VPNGroup1
Original Destination
Address
Any
Original Services
Any
Translated Source
Address
WAN1_IP
Translated
Destination Address
Any
Translated Services
Any