Configuring VPN
Quantum Spark 1500, 1600 and 1800 Appliance Series R80.20.40 Locally Managed Administration Guide | 25
Configuring VPN
This section describes how to configure these VPN configuration scenarios:
n
Remote access VPN
n
Site to site VPN using a preshared secret
n
Site to site VPN using a certificate
Note - VPN does not work with pure IPv6, only with dual stack.
Configuring Remote Access VPN
Introduction
Use these options for remote access:
n
Check Point VPN clients
n
Check Point Mobile clients
n
Check Point SSL VPN
n
L2TP VPN client
Prerequisites
n
In
VPN
>
Blade Control
, make sure:
l
To set the Remote Access control to
On
.
l
To select the
Allow traffic from Remote Access users (by default)
option.
l
To select the applicable connection methods.
For more details, see
"Configuring the Remote Access Blade" on page 217
n
If the gateway uses a dynamic IP address, we recommend you use the DDNS feature. See
"Configuring DDNS and Access Service" on page 115
n
For the Check Point VPN client or Mobile client method, make sure that the applicable client is
installed on the hosts. Click
How to connect
for more information.
Remote Access Configuration
These are the methods to configure remote access users:
n
Local users
n
RADIUS users
n
AD users
To allow only specified users to connect with a remote access client, set group permissions for the
applicable user type. Select the arrow next to the
Add
option and select the relevant group option. See