399
Providing remote access using VPN tunnels
Simplifying multiple Client VPN computer configuration
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
None.
Simplifying multiple Client VPN computer configuration
Security administrators may have hundreds of Symantec Client VPN users to administer. The concept
of a Client VPN package simplifies the configuration of multiple Symantec Client VPN computers.
Configuring the remote side (user’s computer) is normally performed by the user. To simplify set up
for the user, the security gateway supports a feature called a Client VPN package.
A Client VPN package is generated by the security gateway administrator and contains the connection
information for remote entities. The client is not required to provide the basic tunnel configuration
information. The Client VPN package can be loaded when installing the Client VPN or when the user
logs on, after the computer is initialized.
The Client VPN package is a single encrypted file that contains the following information:
■
Gateway IP address
■
Server Phase 1 ID
■
Authentication method
■
Client Phase 1 ID
■
Certificate or shared secret
If the authentication method uses a shared secret, the shared secret is included.
The file must be unzipped to access the individual Client VPN package files. These are the files that are
distributed to the client users.
Note:
Before running the VPN Package Wizard, you must activate any pending changes to the security
gateway configuration.
Prerequisites
Complete the following tasks before beginning this procedure:
■
One of the following:
“Creating an IKE-enabled user”
■
One of the following:
“Using the Remote Access Tunnel Wizard to create Client VPN tunnels”
“Manually configuring a Client VPN tunnel”
To simplify multiple Client VPN computer configuration
1
In the SGMI, on the Tools menu, click
VPN > Client VPN Package Wizard
.
2
In the Client VPN Package Wizard panel, click
Next
.
3
In the Users/User Groups panel, in the Available list box, select the users or user groups that you
want to include and then click the right-arrow
>>
button to move them to the Selected list box.
4
Click
Next
.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...