How to configure Firebox SSLVPN mobilevpn to do both Full tunnel and Split tunnel.

The problem with the WatchGuard SSLVPN client is that it always downloads a fresh SSLVPN configuration file from the Firebox every time it connects. So if you change the SSLVPN settings on the Firebox — for example, from Full Tunnel to Split Tunnel — the next time the SSLVPN client connects, it will automatically download the new configuration and start using it.

One way to avoid this is:

  1. First configure Split Tunnel SSLVPN on the Firebox.
  2. Download and install the OpenVPN Community client.
  3. Download the Split Tunnel .ovpn file from the Firebox and import it into the OpenVPN client.
  4. After that, change the SSLVPN configuration on the Firebox from Split Tunnel back to Full Tunnel.
  5. Now install the WatchGuard SSLVPN client and connect normally.

With this setup:

  • WatchGuard SSLVPN clients will always use the Full Tunnel configuration (because they download the config automatically).
  • OpenVPN clients will continue using the Split Tunnel configuration (because they use the static .ovpn file you imported).

Leave a Reply

Your email address will not be published. Required fields are marked *

Close