Chapter 23
Kerio VPN
304
5.
Create a passive end of the VPN tunnel (the server of the branch office uses a dynamic IP
address). Specify the remote endpoint’s fingerprint by the fingerprint of the certificate of
the branch office VPN server.
Figure 23.20
Headquarter — definition of VPN tunnel for a filial office
6.
Customize traffic rules according to the restriction requirements.
•
In the
Local Traffic
rule, remove all items except those belonging to the local
network of the company headquarters, i.e. except the firewall and
LAN 1
and
LAN 2
.
•
Define (add) the
VPN clients
rule which will allow VPN clients to connect to
LAN 1
and to the network of the branch office (via the VPN tunnel).
•
Create the
Branch office
rule which will allow connections to services in
LAN 1
.
•
Add the
Company headquarters
rule allowing connections from both headquar-
ters subnets to the branch office network..
Содержание KERIO WINROUTE FIREWALL 6
Страница 1: ...Kerio WinRoute Firewall 6 Administrator s Guide Kerio Technologies s r o...
Страница 157: ...12 3 Content Rating System Kerio Web Filter 157 Figure 12 7 Kerio Web Filter rule...
Страница 189: ...14 4 URL Groups 189 Description The item s description comments and notes for the administrator...
Страница 247: ...19 4 Alerts 247 Figure 19 14 Details of a selected event...
Страница 330: ...Chapter 23 Kerio VPN 330 Figure 23 55 The Paris filial office VPN server configuration...
Страница 368: ...368...