Netgear ProSafe SSL312 User Manual Page 82

  • Download
  • Add to my manuals
  • Print
  • Page
    / 122
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 81
NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual
6-2 Configuring the SSL VPN Tunnel Client and Port Forwarding
v2.0, May 2007
Detects and reroutes individual data streams to the Port Forwarding connection rather than
opening up a full tunnel to the corporate network.
Offers more fine grained management than VPN Tunnel. Administrators define individual
applications and resources that will be available to remote users. With VPN Tunnel,
administrators must create access policies to block undesirable traffic at the SSL VPN
Concentrator rather than at the client level.
SSL VPN Client Configuration
The IP addresses to be assigned to remote VPN Tunnel Clients are configured in the VPN Tunnel
menu. Because the connection is a point-to-point connection, you can assign IP addresses from the
corporate subnet to the remote VPN Tunnel Clients. The DNS settings assigned to the VPN Tunnel
Client are configured in the Network menu.
Some additional considerations:
So that the virtual (PPP) interface address of the VPN Tunnel Client does not conflict with
addresses on the corporate network, configure an IP address range that does not directly
overlap with addresses on your local network. For example, if 192.168.0.1 through
192.168.0.100 are currently assigned to devices on your local network, then start the client
address range at 192.168.0.101 or choose an entirely different subnet altogether.
The VPN Tunnel Client cannot contact a server on the corporate network if the VPN Tunnel
Client’s Ethernet interface shares the same IP address as the server or the SSL VPN
Concentrator (for example, if your laptop has a network interface IP address of 10.0.0.45, then
you won't be able to contact a server on the remote network that also has the IP address
10.0.0.45).
If you assign an entirely different subnet to the VPN Tunnel Clients than the subnet used by
the corporate network, you must
Add a client route to configure the VPN Tunnel client to connect to the corporate network
using the VPN tunnel.
Create a static route on the corporate network’s firewall to forward local traffic intended
for the VPN Clients to the SSL VPN Concentrator.
Select whether you want to enable full tunnel or split tunnel support based on your bandwidth:
Full tunnel – Sends all of the traffic across the VPN tunnel.
Page view 81
1 2 ... 77 78 79 80 81 82 83 84 85 86 87 ... 121 122

Comments to this Manuals

No comments