2

With OpenVPN there is a well-known option "push" which allows to push an IP static route from the server to a connected OpenVPN client.
I would like to know if there is an equivalent of this option on:

  1. L2TP over IPsec VPN?
  2. IPsec (cisco compat) VPN?
  3. Juniper SA (aka Juneos Pulse, aka NC) SSL VPN?
Alex
  • 1,768
  • 4
  • 30
  • 51
  • 3
    I can tell you that the Cisco VPN client family lets you set which subnets get routed through the VPN ("split tunneling"), but it doesn't have the flexibility to do any more creative route injection. – Shane Madden Dec 21 '11 at 16:49
  • but that is configured on the cisco vpn client, right? I am talking about pushing route table from VPN server to a freshly connected client (like OpenVPN). – Alex Dec 22 '11 at 01:28
  • 2
    No, the server decides which networks are tunneled or not in their split tunnel implementation. – Shane Madden Dec 22 '11 at 01:35
  • Thank you Shane, do you know situation with L2TP and Junos Pulse? – Alex Dec 22 '11 at 01:41
  • Can't say that I do, sorry. – Shane Madden Dec 22 '11 at 02:43

1 Answers1

1

Have to answer my own question after some research:

  1. L2TP over IPsec VPN -- cannot push routes to clients (L2TP/PPP protocol limitations)
  2. Cisco IPsec -- can push routes (thanks Shane, upvoted your comments)
  3. Junos Pulse -- can push routes (according to docs, still to be tested)
Alex
  • 1,768
  • 4
  • 30
  • 51