Netextender User And Group Settings; Configuring User-Level Netextender Settings - Dell SonicWall SRA 4200 Administrator's Manual

Sra 6.0
Table of Contents

Advertisement

policy for a specific service (for example RDP) will take precedence over a policy that
applies to all services.
User policies take precedence over group policies and group policies take precedence over
global policies, regardless of the policy definition. A user policy that allows access to all IP
addresses will take precedence over a group policy that denies access to a single IP
address.
To add NetExtender client routes, perform the following steps:
Navigate to the NetExtender > Client Routes page.
Step 1
Select Enabled from the Tunnel All Mode drop-down list to force all traffic for this user—
Step 2
including traffic destined to the remote users' local network—over the SRA NetExtender tunnel.
Click the Add Client Route button. The Add Client Route dialog box displays.
Step 3
In the Add Client Route dialog box, in the Destination Network field, type the IP address of
Step 4
the trusted network to which you would like to provide access with NetExtender. For example,
if you are connecting to an existing DMZ with the network 192.168.50.0/24 and you want to
provide access to your LAN network 192.168.168.0/24, you would enter 192.168.168.0.
You can enter an IPv6 route in the Destination Network field, in the form 2007::1:2:3:0.
For an IPv4 destination network, type the subnet mask in the Subnet Mask/Prefix field using
Step 5
decimal format (255.0.0.0, 255.255.0.0, or 255.255.255.0). For an IPv6 destination network,
type the prefix, such as 112.
Click Add.
Step 6
Repeat this procedure for all necessary routes.
Step 7

NetExtender User and Group Settings

Multiple range and route support for NetExtender enables network administrators to easily
segment groups and users without the need of configuring firewall rules to govern access. This
user segmentation allows for granular control of access to the network—allowing users access
to necessary resources while restricting access to sensitive resources to only those who
require it. This section contains the following subsections:

Configuring User-Level NetExtender Settings

All of the global settings for NetExtender (IP address ranges, DNS settings, client routes, and
client connection settings) can be configured at the user and group levels. Multiple range and
route support for NetExtender enables network administrators to easily segment groups and
users without the need of configuring firewall rules to govern access. This user segmentation
allows for granular control of access to the network—allowing users access to necessary
resources while restricting access to sensitive resources to only those who require it.
To configure custom settings for individual users, perform the following steps:
196 | SRA 6.0 Administrator's Guide
"Configuring User-Level NetExtender Settings" section on page 196
"Configuring Group-Level NetExtender Settings" section on page 200

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents