I'm setting up a PA-200 for a remote office and was wondering if anyone could tell me how I would restrict the GUI access on the Public IP to solely 1 range of public IP addresses. As it sits now I have access on any device as long as I have the password and username, I'm not sure if that is the normal default or not but it doesn't really sit well with me. Thanks for any help!
Solved! Go to Solution.
Hi BPry,
You can create a management profile and allow specific IP address or subnet. Then apply it to the outside interface. See below:
Hi BPry,
You can create a management profile and allow specific IP address or subnet. Then apply it to the outside interface. See below:
Thanks! I actually just figured it out, didn't realize that it was allowed for everyone until I realized that my laptop wasn't on the wifi today.
I have configured 1/1 as untrust layer 3 interface with a public IP connected to home router. My management interface is configured as 192.168.18.100. How do I access the WebGUI of this PA-200 using https://192.168.18.100 from my office which is 10.231.x.x desktop IP. This PA-200 is used as IPsec tunnel from my home to on premise ASA.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!