Setting Up Your Nokia IP60 Appliance as a VPN Server
Chapter 16: Working with VPNs
347
To create a Remote Access VPN with two VPN sites
1.
On the remote user VPN site's IP60 appliance, add the office Remote Access VPN Server as a
Remote Access VPN site.
See
Adding and Editing VPN Sites
on page
Error! Bookmark not defined.
.
The remote user's IP60 appliance will act as a Remote Access VPN Client.
2.
On the office VPN site's IP60 appliance, enable a Remote Access VPN Server.
See
Setting Up Your Nokia IP60 Appliance as a VPN Server
on page 347.
Internal VPN Server
You can use your IP60 appliance as an internal VPN Server, for enhanced wired and wireless security.
When an internal VPN Server is enabled, internal network PCs and PDAs with the appropriate software
installed can establish a Remote Access VPN session to the gateway. This means that connections from
internal network users to the gateway can be encrypted and authenticated.
The benefits of using an internal VPN Server are two-fold:
Accessibility
Using SecuRemote/SecureClient or L2TP, you can enjoy a secure connection from anywhere—in your
wireless network or on the road—without changing any settings. The standard is completely
transparent and allows you to access company resources the same way, whether you are sitting at your
desk or anywhere else.
Security
Many of today's attacks are increasingly introduced from inside the network. Internal security threats
cause outages, downtime, and lost revenue. Wired networks that deal with highly sensitive
information—especially networks in public places, such as classrooms—are vulnerable to users trying
to hack the internal network.
Using an internal VPN Server, along with a strict security policy for non-VPN users, can enhance
security both for wired networks and for wireless networks, which are particularly vulnerable to
security breaches.
For information on setting up your IP60 appliance as an internal VPN Server, see
Configuring the Internal
VPN Server
on page 352.
Setting Up Your Nokia IP60 Appliance as a VPN Server
You can make your network available to authorized users connecting from the Internet or from your
internal networks, by setting up your IP60 appliance as a VPN Server.
When the SecuRemote Remote Access VPN Server or SecuRemote Internal VPN Server is enabled, users
can connect to the server via Check Point SecuRemote/SecureClient or via a IP60 appliance in Remote
Access VPN mode. When the L2TP (Layer 2 Tunneling Protocol) VPN Server is enabled, users can
connect to the server using an L2TP client such as the Microsoft Windows L2TP IPSEC VPN Client. L2TP
Summary of Contents for IP60 - Security Appliance
Page 1: ...Part No N450000643 Rev 001 Published February 2008 Nokia IP60 Security Appliance User Guide ...
Page 4: ...4 Nokia IP60 Security Appliance User Guide ...
Page 10: ......
Page 12: ......
Page 38: ......
Page 58: ......
Page 108: ......
Page 268: ......
Page 482: ......