We use cookies on our website to ensure we provide you with the best experience on our website. By using our website, you agree to the use of cookies for analytics and personalized content.This website uses cookies. More Information
It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda CloudGen Firewall

This Firmware Version Is End-Of-Support

Documentation for this product is no longer updated. Please see End-of-Support for CloudGen Firewall Firmware for further information on our EoS policy.

How to Configure an Access Rule for a Client-to-Site VPN

  • Last updated on

To connect your routed client-to-site VPN to your network, you must add a forwarding access rule to direct traffic between the tunnel, the remote, and the home network.

Before you begin

Before creating your forwarding access rules, gather the following information:

  • The published VPN network(s).
  • The VPN client network(s)

Step 1. Create a network object for the published VPN networks

Create a static network object for the published VPN networks. If more networks are added to published VPN networks, update the network object to reflect these changes.

  • Type – Select List of Network Addresses.
  • Include Entries – For each published VPN network, click + to add it to the list.


For more information, see Network Objects

Step 2. Create a Pass access rule

  • Action – Select Pass.
  • Source – Select VPN-Clients
  • Service – Select the allowed services, or Any to allow all services.
  • Destination – Select the network object containing the published VPN networks created in step 1.
  • Connection Method – Select Dynamic SNAT .


For more information, see How to Create a Pass Access Rule

Last updated on