
SANGFOR IAM v2.1 User Manual
86
5.1.5.
VPN<->LAN
[VPN<->LAN] configures the rule for data transmission between the VPN interface and the DMZ
interface. By default, TCP, UDP and ICMP data transmission of both directions between the
interfaces are allowed.
The configuration page is as shown below:
For instance, to allow the IP addresses (172.16.1.100-172.16.1.200) of a Branch VPN
(172.16.0.0/24) to get access to the WEB server (192.168.1.20) of the headquarters and ban it
from accessing to the SQL SERVER, you need first to create a filtering rule on WEB server.
Detailed configuration is shown in the following figure:
Содержание IAM 2.1
Страница 1: ...SANGFOR IAM v2 1 User Manual IAM 2 1 User Manual September 2010...
Страница 296: ...SANGFOR IAM v2 1 User Manual 295...