
395
Providing remote access using VPN tunnels
Configuring tunnels
4
Click
OK
.
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
6
After creating the tunnel, you can use it in the following ways:
■
To specify how traffic arrives or leaves the security gateway, by including it in a rule.
■
To specify how traffic arrives at the security gateway, by including it in an address transform.
■
To simplify configuration for remote Symantec Client VPN users, by including creating a
Client VPN package.
Related information
For further information related to this topic, see the following:
■
“Client VPN tunnel Properties—General tab”
■
“Using the Remote Access Tunnel Wizard to set up clientless VPN connections”
■
■
“Controlling IP addresses with address transforms”
■
“Simplifying multiple Client VPN computer configuration”
Manually configuring a tunnel using IPsec with static key
You can configure a VPN policy with static IKE to support static VPN tunnels. In static VPN tunnels,
both tunnel endpoints must have the same secret keys, security parameter indexes (SPIs), and
encryption and authentication schemes.
Prerequisites
None.
To manually configure a tunnel using IPsec with static key
1
In the SGMI, in the left pane, under Policy, click
VPN
.
2
In the right pane, on the Tunnels tab, click
New > IPsec static key
tunnel
.
3
In the IPsec static key tunnel Properties dialog box, on the General tab, do the following:
Enable
To enable the tunnel, check
Enable
.
Name
Type a unique name for the tunnel.
Local endpoint
Select a network entity to serve as the local tunnel endpoint.
Local gateway
Select a security gateway network entity to serve as the local gateway interface for the
tunnel.
Remote endpoint
Select a network entity to serve as the remote tunnel endpoint.
Remote gateway
Select a security gateway network entity to serve as the remote gateway interface for
the tunnel.
VPN policy
Select a VPN policy for use with your tunnel.
Caption
Type a brief description of the tunnel.
Содержание Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Страница 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Страница 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Страница 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Страница 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Страница 319: ...318 Controlling traffic at the security gateway Blocking inappropriate content with content filtering...
Страница 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Страница 409: ...408 Providing remote access using VPN tunnels Multicast traffic through gateway to gateway IPsec tunnels...
Страница 509: ...508 Generating reports Upgrade reports...
Страница 553: ...552 Advanced system settings Configuring advanced options...
Страница 557: ...556 SSL server certificate management Installing a signed certificate...
Страница 861: ...860 Index...