385
Providing remote access using VPN tunnels
Configuring tunnels
Related information
For further information related to this topic, see the following:
■
“Global IKE Policy Properties—General tab”
■
“Global IKE Policy Properties—Data Privacy Preference tab”
■
“Global IKE Policy Properties—Data Integrity Preference tab”
■
“Global IKE Policy Properties—Diffie-Hellman Groups tab”
Configuring tunnels
This section describes the following tasks:
■
Running the Gateway-to-Gateway Tunnel Wizard
■
Using the Remote Access Tunnel Wizard to create Client VPN tunnels
■
The simplest way to create VPN tunnels is to use one of the following tunnel wizards:
You can start the wizards from the Tools menu or from the home page of the SGMI.
After creating tunnels, you can use them directly to provide access between security gateways, or by
Symantec Client VPN and clientless VPN users.
You can also use tunnels in rules, as the method by which traffic arrives at and leaves the security
gateway, and in address transforms, as the method by which traffic arrives at the security gateway.
When you create Client VPN tunnels, you can also incorporate them in packages that are sent to
remote users to simplify the configuration of Symantec Client VPN.
Running the Gateway-to-Gateway Tunnel Wizard
You can use the Gateway-to-Gateway Tunnel Wizard to construct VPN tunnels between two ISAKMP-
compliant security gateways. This wizard collects the information necessary to identify the local and
remote tunnel endpoints and the VPN policy that governs the traffic within them.
Prerequisites
None.
To run the Gateway-to-Gateway Tunnel Wizard
1
In the SGMI, on the Tools menu, click
VPN > Gateway-to-Gateway Tunnel Wizard
.
2
In the Gateway-to-Gateway Tunnel Wizard panel, click
Next
.
3
In the Gateway-to-Gateway Tunnel Information panel, do the following:
■
In the Name text box, type a name for the tunnel.
■
In the Description text box, type a brief description of the tunnel.
Gateway-to-Gateway
Tunnel Wizard
To build tunnels between your security gateway and a host protected by another
security gateway.
Remote Access
Tunnel Wizard
To build a tunnel between your security gateway and a host using Symantec’s Client
VPN, Symantec Clientless VPN, or other IPsec-based VPN client.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...