The Allow Local LAN Access parameter gives you access to resources on your local LAN when you are connected through a secure gateway to a central-site VPN device.
When this parameter is enabled:
You can access local resources (printer, fax, shared files, other systems) while connected.
You can access up to 10 networks. A network administrator at the central site configures a list of networks at the VPN Client side that you can access.
If you are connected to a central site, all traffic from your system goes through the IPSec tunnel except traffic to the networks excluded from doing so (in the network list).
If enabled on the VPN Client and permitted on the central-site VPN device, you can see a list of the local LANs that are available by choosing Statistics from the Status menu and clicking the Route Details tab. For more information, see the Route Details topic.
When this parameter is disabled, all traffic from your client system goes through the IPSec connection to the secure gateway.
If the local LAN you are using is not secure, you should not enable local LAN access. For example, do not enable this feature when you are using a local LAN in a hotel or airport.
To enable this feature, check the Allow Local LAN Access check box on the VPN Client. You must also enable this feature on the VPN device you are connecting to.
Copyright © 2003, Cisco Systems, Inc. All rights reserved.