Block Client-to-site Internet when VPN is down.

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Block Client-to-site Internet when VPN is down.

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Block Client-to-site Internet when VPN is down.
Block Client-to-site Internet when VPN is down.
2021-08-24 00:08:07
Model: ER605 (TL-R605)  
Hardware Version: V1
Firmware Version: 1.1.1

I have a client-to-site VPN setup using a TL-R605.

 

The client-to-site works well, and the connection is very stable.

 

The client-to-site is setup to using a remote restricted Internet gateway, everything works great when the VPN is up, but as a test, we shut down the VPN Connection, and then all of the clients connected behing the TL-R605 have direct internet access using the local modem.

 

Is there any way to set up this connection so that clients can't use the Internet unless the VPN Tunnel is up?

 

  0      
  0      
#1
Options
2 Reply
Re:Block Client-to-site Internet when VPN is down.
2021-08-24 03:44:16
This is not a setting on the VPN Server. Once the VPN tunnel is down, the server will lose control of the remote laptop. So it can't limit the behavior of the remote laptop after the connection is cut off. I think you should consider if your remote laptop or router support such a function.
  0  
  0  
#2
Options
Re:Block Client-to-site Internet when VPN is down.
2021-08-24 11:48:19

@FloridaSummer 

 

Totally agree with  Somnus 

 

This is not a VPN configuration, or something you can set from Omada.   The only way to stop this would be via EndPoint restrictions, MDM or something like that.  

 

We have such a setting enabled using McAfee AV and Endpoint Control, basically, they can only access anything when VPN is enabled and this is ON as soon as the PC boots.  We control this via a proxy address, the proxy isn't there until the VPN is connected and they don't have access to change the proxy settings, hence no "non VPN" internet

 

 

  0  
  0  
#3
Options