Chapter 6:
Virtual Private Networking Using SSL
|
101
New Template Style Guide Reference Manual
5.
For port forwarding, declare the servers and services.
Create a list of servers and services that can be made available through user, group, or
global policies. You can also associate fully qualified domain names with these servers.
The <Product Name> will resolve the names to the servers using the list you have
created.
6.
For VPN tunnel service, configure the virtual network adapter.
In the VPN tunnel option, the <Product Name> creates a virtual network adapter on the
remote PC that will function as if it were on the local network. Configure the portal’s SSL
VPN Client to define a pool of local IP addresses to be issued to remote clients, as well
as DNS addresses. Declare static routes or grant full access to the local network, subject
to additional policies.
7.
For simplifying policies, define network resource objects.
Network resource objects are groups of IP addresses, IP address ranges, and services.
By defining resource objects, you can more quickly create and configure network policies.
8.
Configure the policies.
Policies determine access to network resources and addresses for individual users,
groups, or everyone.
Creating the Portal Layout
The Portal Layouts screen allows you to create a custom page that remote users will see
when they log into the portal. Because the page is completely customizable, it provides an
ideal way to communicate remote access instructions, support information, technical contact
info, or VPN-related news updates to remote users. The page is also well-suited as a starting
page for restricted users; if mobile users or business partners are only permitted to access a
few resources, the page you create will present only the resources relevant to these users.
Portal Layouts are applied by selecting from available portal layouts in the configuration of a
Domain. When you have completed your Portal Layout, you can apply the Portal Layout to
one or more authentication domains (see
“Creating a Domain”
on page 117 to apply a Portal
Layout to a Domain). You can also make the new portal the default portal for the SSL VPN
gateway by selecting the default radio button adjacent to the portal layout name.
Note:
The default portal address is
https://<
IP_Address
>/portal/SSL-VPN
.
The domain
geardomain
is attached to the SSL-VPN portal.
The <Product Name> administrator may define individual layouts for the SSL VPN portal.
The layout configuration includes the menu layout, theme, portal pages to display, and web
cache control options. The default portal layout is the SSL-VPN portal. You can add
additional portal layouts. You can also make any portal the default portal for the SSL