SSL VPN Issue, End users can't access our Internal Network Resources

j_sutio Lv1Posted 02 Jun 2020 15:22

Hi All,

Good day!

I just want to ask how to solve this;

We have a new configured SSL VPN and our users can successfully login to the web interface and connect to SSL Client VPN application. However our users can't connect to the Internal Network Resources.


- Mode: Gateway
Interface Setting:
- LAN: eth3
- WAN: eth1

- Name: Internal
- Type: Other
- Address: 192.168.x.x/22/1:65535
- Program Path: NONE
- Added to : Default Group
- Enable resoures (check)
- Visible for user (check)

Local DNS:
- Primary DNS: 192.168.x.x (DNS Server From DC1)
- Alternate DNS: 192.168.x.x (DNS Server From DC2)

addimasqi Lv2Posted 02 Jun 2020 17:39
Have you checked your static route?
Based on our experience, we must add a static route (Network - Routing) to your internal IP address (192.168.x.x/22) via the gateway that connected to your network switch from NGAF/SSLVPN appliance.
Osama Muhammad Lv3Posted 02 Jun 2020 18:51
1. Create L3 VPN than assign all resources ip pool to it.
2. Create role of any suitable name, assign it the L3VPN created in 1st step.
3. Create a user, assign it the role created in 1st step.

Do alternate DNS as

