What is the name of the domain?
What is the error number?
behavioral error
What is the error message?
behavioral error
What is the issue you’re encountering
Application Policy not working as defined. We need to be able to access a tunnel from a certain IP without Restrictions but want “generic” access to the tunnel via authentication.
What steps have you taken to resolve the issue?
Testing Tunnel Access restrictions:
- Created Application and policy to require access via email authentication ( Works reasonable well)
- Deleted Application that included the email authentication Policy to restrict tunnel access
- Recreated Application and Policy (with same names but using IP restrictions.
Result
if you are accessing the tunnel form the allowed IP range you can access the tunnel but still need to use the email authentication (even this rule was deleted at least in the gui)
Access from outside the allowed IP range is denied as designed and expected
, recreated entry and added ip restriction instead
What are the steps to reproduce the issue?
See above