
397
Providing remote access using VPN tunnels
Ensuring compliance of remote Client VPN computers
■
“Using the Remote Access Tunnel Wizard to set up clientless VPN connections”
■
■
“Controlling IP addresses with address transforms”
Ensuring compliance of remote Client VPN computers
The client compliance feature in the security gateway lets you restrict computers that connect through
a tunneled VPN connection to your internal network. By requiring computers that connect to be
secured or else be denied access, you can minimize the risk of opening up your network to many
remote, and possibly unsecured computers.
A client-compliance profile comprises both the various security criteria that a user’s client computer
must satisfy and also any security actions that either the client or appliance should perform at logon
and afterward.
Prerequisites
None.
To ensure compliance of remote client VPN computers
1
In the SGMI, in the left pane, under Policy, click
Client Compliance
.
2
In the right pane, in the Client Compliance window, do the following:
Periodically check
compliance
Check this option to enable a compliance check interval.
Check interval
(minutes)
If Periodically check compliance is checked, type the number of minutes between
automatic client compliance checks.
Require Symantec
Client Firewall
Check this option to require client computers to have Symantec Client Firewall installed
and enabled.
If the Symantec Client Firewall has just been turned on, the security gateway may not
recognize it immediately.
Require auto-protect Check this option to require that clients have the antivirus auto-protect feature
enabled.
Require recent
system scan
Check this option to require that a system antivirus scan is performed periodically.
Last scan within
(days)
If Require recent system scan is checked, type the number of days between automatic
system scans.
Require latest version
of scanning engine
Check this option to require the latest version of the antivirus scanning engine.
Require latest virus
definitions
Check this option to require that the latest virus definitions be available.
Query servers every
... minutes
Type the number of minutes between antivirus server queries.
Primary antivirus
server
Select the primary antivirus server.
User name
Type the user name for antivirus server access, if required.
Password
Type the password for antivirus server access, if required.
Secondary antivirus
server
Select the secondary antivirus server.
Содержание Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Страница 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Страница 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Страница 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Страница 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Страница 319: ...318 Controlling traffic at the security gateway Blocking inappropriate content with content filtering...
Страница 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Страница 409: ...408 Providing remote access using VPN tunnels Multicast traffic through gateway to gateway IPsec tunnels...
Страница 509: ...508 Generating reports Upgrade reports...
Страница 553: ...552 Advanced system settings Configuring advanced options...
Страница 557: ...556 SSL server certificate management Installing a signed certificate...
Страница 861: ...860 Index...