163
Defining your security environment
Defining traffic endpoints with network entities
■
To specify the local endpoint in a Client VPN tunnel.
■
To specify the source or destination of traffic in an address transform.
■
To specify the real or NAT subnet in a NAT Pool.
Related information
For further information related to this topic, see the following:
■
“Subnet Network Entity Properties—General tab”
■
“Subnet Network Entity Properties—Spoof Protection tab”
■
“Using the Universe network entity in rules”
■
■
■
■
■
“Controlling IP addresses with address transforms”
■
“Mapping addresses with NAT pools”
Defining a registered domain with a domain name network entity
A domain name network entity represents a group of computers that share the network portion of the
host name, for example symantecdomain.com or symantecexample.com. Domain name network
entities are registered within the Internet community. Registered domain network entities end with an
extension such as .com, .edu, or .gov to indicate the type of domain, or a country code such as .jp
(Japan) to indicate the location.
Domain name network entities are useful if there are special resources at a site, or if users at that site
need access behind the security gateway. A rule using a domain name network entity applies to any
computer at that domain.
Once defined, you can use domain name entities to specify the source or destination of traffic in rules
and packet filters.
Note:
To use a domain entity in a rule, you must enable reverse lookups. Reverse lookups are disabled
by default.
Prerequisites
None.
To define a registered domain with a domain name network entity
1
In the SGMI, in the left pane, under Assets, click
Network
.
2
In the right pane, on the Network Entities tab, click
New > Domain Name Network Entity
.
3
In the domain name network entity properties dialog box, on the General tab, do the following:
4
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
Entity name
Type a name for the domain network entity.
Domain name
Type a name for the domain.
Caption
Type a brief description of the domain network entity.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...