{"id":355,"date":"2026-04-23T18:11:50","date_gmt":"2026-04-23T15:11:50","guid":{"rendered":"https:\/\/mangen.kitabara.org\/?p=355"},"modified":"2026-04-23T18:11:50","modified_gmt":"2026-04-23T15:11:50","slug":"how-to-configure-firebox-sslvpn-mobilevpn-to-do-both-full-tunnel-and-split-tunnel","status":"publish","type":"post","link":"https:\/\/mangen.kitabara.org\/index.php\/how-to-configure-firebox-sslvpn-mobilevpn-to-do-both-full-tunnel-and-split-tunnel\/","title":{"rendered":"How to configure Firebox SSLVPN mobilevpn to do both Full tunnel and Split tunnel."},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The problem with the WatchGuard SSLVPN client is that it <strong>always downloads a fresh SSLVPN configuration file from the Firebox every time it connects<\/strong>. So if you change the SSLVPN settings on the Firebox \u2014 for example, from <strong>Full Tunnel<\/strong> to <strong>Split Tunnel<\/strong> \u2014 the next time the SSLVPN client connects, it will automatically download the new configuration and start using it.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>One way to avoid this is:<\/strong><\/p>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li>First configure <strong>Split Tunnel<\/strong> SSLVPN on the Firebox.<\/li>\n\n\n\n<li>Download and install the <strong><a href=\"https:\/\/openvpn.net\/community\/\" data-type=\"link\" data-id=\"https:\/\/openvpn.net\/community\/\" target=\"_blank\" rel=\"noopener\">OpenVPN Community client<\/a><\/strong>.<\/li>\n\n\n\n<li><a href=\"https:\/\/www.watchguard.com\/help\/docs\/help-center\/en-US\/Content\/en-US\/Fireware\/mvpn\/ssl\/mvpn_ssl_ovpn_profile_c.html\" data-type=\"link\" data-id=\"https:\/\/www.watchguard.com\/help\/docs\/help-center\/en-US\/Content\/en-US\/Fireware\/mvpn\/ssl\/mvpn_ssl_ovpn_profile_c.html\" target=\"_blank\" rel=\"noopener\">Download the <strong>Split Tunnel .ovpn file<\/strong> from the Firebox and import it into the OpenVPN client. <\/a><\/li>\n\n\n\n<li>After that, change the SSLVPN configuration on the Firebox from <strong>Split Tunnel<\/strong> back to <strong>Full Tunnel<\/strong>.<\/li>\n\n\n\n<li>Now install the <strong>WatchGuard SSLVPN client<\/strong> and connect normally.<\/li>\n<\/ol>\n\n\n\n<figure data-wp-context=\"{&quot;galleryId&quot;:&quot;6a67402d7a996&quot;}\" data-wp-interactive=\"core\/gallery\" class=\"wp-block-gallery has-nested-images columns-default is-cropped wp-block-gallery-1 is-layout-flex wp-block-gallery-is-layout-flex\">\n<figure data-wp-context=\"{&quot;imageId&quot;:&quot;6a67402d7bba6&quot;}\" data-wp-interactive=\"core\/image\" data-wp-key=\"6a67402d7bba6\" class=\"wp-block-image size-large wp-lightbox-container\"><img loading=\"lazy\" decoding=\"async\" width=\"629\" height=\"588\" data-wp-class--hide=\"state.isContentHidden\" data-wp-class--show=\"state.isContentVisible\" data-wp-init=\"callbacks.setButtonStyles\" data-wp-on--click=\"actions.showLightbox\" data-wp-on--load=\"callbacks.setButtonStyles\" data-wp-on--pointerdown=\"actions.preloadImage\" data-wp-on--pointerenter=\"actions.preloadImageWithDelay\" data-wp-on--pointerleave=\"actions.cancelPreload\" data-wp-on-window--resize=\"callbacks.setButtonStyles\" data-id=\"357\" src=\"http:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Full.png\" alt=\"\" class=\"wp-image-357\" srcset=\"https:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Full.png 629w, https:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Full-300x280.png 300w\" sizes=\"auto, (max-width: 629px) 100vw, 629px\" \/><button\n\t\t\tclass=\"lightbox-trigger\"\n\t\t\ttype=\"button\"\n\t\t\taria-haspopup=\"dialog\"\n\t\t\tdata-wp-bind--aria-label=\"state.thisImage.triggerButtonAriaLabel\"\n\t\t\tdata-wp-init=\"callbacks.initTriggerButton\"\n\t\t\tdata-wp-on--click=\"actions.showLightbox\"\n\t\t\tdata-wp-style--right=\"state.thisImage.buttonRight\"\n\t\t\tdata-wp-style--top=\"state.thisImage.buttonTop\"\n\t\t>\n\t\t\t<svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"12\" height=\"12\" fill=\"none\" viewBox=\"0 0 12 12\">\n\t\t\t\t<path fill=\"#fff\" d=\"M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z\" \/>\n\t\t\t<\/svg>\n\t\t<\/button><\/figure>\n\n\n\n<figure data-wp-context=\"{&quot;imageId&quot;:&quot;6a67402d7bfa9&quot;}\" data-wp-interactive=\"core\/image\" data-wp-key=\"6a67402d7bfa9\" class=\"wp-block-image size-large wp-lightbox-container\"><img loading=\"lazy\" decoding=\"async\" width=\"627\" height=\"594\" data-wp-class--hide=\"state.isContentHidden\" data-wp-class--show=\"state.isContentVisible\" data-wp-init=\"callbacks.setButtonStyles\" data-wp-on--click=\"actions.showLightbox\" data-wp-on--load=\"callbacks.setButtonStyles\" data-wp-on--pointerdown=\"actions.preloadImage\" data-wp-on--pointerenter=\"actions.preloadImageWithDelay\" data-wp-on--pointerleave=\"actions.cancelPreload\" data-wp-on-window--resize=\"callbacks.setButtonStyles\" data-id=\"358\" src=\"http:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Split.png\" alt=\"\" class=\"wp-image-358\" srcset=\"https:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Split.png 627w, https:\/\/mangen.kitabara.org\/wp-content\/uploads\/2026\/04\/SSLVPN-FB-Split-300x284.png 300w\" sizes=\"auto, (max-width: 627px) 100vw, 627px\" \/><button\n\t\t\tclass=\"lightbox-trigger\"\n\t\t\ttype=\"button\"\n\t\t\taria-haspopup=\"dialog\"\n\t\t\tdata-wp-bind--aria-label=\"state.thisImage.triggerButtonAriaLabel\"\n\t\t\tdata-wp-init=\"callbacks.initTriggerButton\"\n\t\t\tdata-wp-on--click=\"actions.showLightbox\"\n\t\t\tdata-wp-style--right=\"state.thisImage.buttonRight\"\n\t\t\tdata-wp-style--top=\"state.thisImage.buttonTop\"\n\t\t>\n\t\t\t<svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"12\" height=\"12\" fill=\"none\" viewBox=\"0 0 12 12\">\n\t\t\t\t<path fill=\"#fff\" d=\"M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z\" \/>\n\t\t\t<\/svg>\n\t\t<\/button><\/figure>\n<\/figure>\n\n\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>With this setup:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>WatchGuard SSLVPN clients<\/strong> will always use the <strong>Full Tunnel<\/strong> configuration (because they download the config automatically).<\/li>\n\n\n\n<li><strong>OpenVPN clients<\/strong> will continue using the <strong>Split Tunnel<\/strong> configuration (because they use the static .ovpn file you imported).<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The problem with the WatchGuard SSLVPN client is that it always downloads a fresh SSLVPN configuration file from the Firebox every time it connects. So if you change the SSLVPN settings on the Firebox \u2014 for example, from Full Tunnel to Split Tunnel \u2014 the next time the SSLVPN client connects, it will automatically download&hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10,4,2],"tags":[],"class_list":["post-355","post","type-post","status-publish","format-standard","hentry","category-sslvpn","category-vpn","category-watchguard"],"_links":{"self":[{"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/posts\/355","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/comments?post=355"}],"version-history":[{"count":3,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/posts\/355\/revisions"}],"predecessor-version":[{"id":360,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/posts\/355\/revisions\/360"}],"wp:attachment":[{"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/media?parent=355"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/categories?post=355"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mangen.kitabara.org\/index.php\/wp-json\/wp\/v2\/tags?post=355"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}