The Ssl Global Setting Screen - ZyXEL Communications ZyWall ATP series User Manual

Table of Contents

Advertisement

Table 166 VPN > SSL VPN > Access Privilege > Add/Edit (continued)
LABEL
User/Group
Network Extension (Optional)
Enable Network
Extension
Force all client
traffic to SSL VPN
tunnel
NetBIOS
broadcast over
SSL VPN Tunnel
Assign IP Pool
DNS/WINS Server
1..2
Network List
OK
Cancel

21.3 The SSL Global Setting Screen

Click VPN > SSL VPN and click the Global Setting tab to display the following screen. Use this screen to
set the IP address of the Zyxel Device (or a gateway device) on your network for full tunnel mode
access.
Chapter 21 SSL VPN
DESCRIPTION
The Selectable User/Group Objects list displays the name(s) of the user account and/or user
group(s) to which you have not applied an SSL access policy yet.
To associate a user or user group to this SSL access policy, select a user account or user group
and click the right arrow button to add to the Selected User/Group Objects list. You can
select more than one name.
To remove a user or user group, select the name(s) in the Selected User/Group Objects list and
click the left arrow button.
Note: Although you can select admin and limited-admin accounts in this screen,
they are reserved for device configuration only. You cannot use them to
access the SSL VPN portal.
Select this option to create a VPN tunnel between the authenticated users and the internal
network. This allows the users to access the resources on the network as if they were on the
same local network. This includes access to resources not supported by SSL application
objects. For example this lets users Telnet to the internal network even though the Zyxel Device
does not have SSL application objects for Telnet.
Clear this option to disable this feature. Users can only access the applications as defined by
the VPN tunnel's selected SSL application settings and the remote user computers are not
made to be a part of the local network.
Select this to send all traffic from the SSL VPN clients through the SSL VPN tunnel. This replaces
the default gateway of the SSL VPN clients with the SSL VPN gateway.
Select this to search for a remote computer and access its applications as if it was in a Local
Area Network. The user can find a computer not only by its IP address but also by computer
name.
Define a separate pool of IP addresses to assign to the SSL users. Select it here.
The SSL VPN IP pool should not overlap with IP addresses on the Zyxel Device's local networks
(LAN and DMZ for example), the SSL user's network, or the networks you specify in the SSL VPN
Network List.
Select the name of the DNS or WINS server whose information the Zyxel Device sends to the
remote users. This allows them to access devices on the local network using domain names
instead of IP addresses.
To allow user access to local network(s), select a network name in the Selectable Address
Objects list and click the right arrow button to add to the Selected Address Objects list. You
can select more than one network.
To block access to a network, select the network name in the Selected Address Objects list
and click the left arrow button.
Click OK to save the changes and return to the main Access Privilege screen.
Click Cancel to discard all changes and return to the main Access Privilege screen.
ZyWALL ATP Series User's Guide
419

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Atp500Atp200Atp800

Table of Contents