Access method advantages
Access Method
Provides Access to
Translated Web
Any Web resource
access
(including Web‐based
applications, Web portals,
Custom Port
and Web servers).
Mapped Web
access
Translated Web on
Windows operating
Custom FQDN
systems also offers access
Mapped Web
to network shares.
access
Custom Port Mapping
provides access via a
specific port defined by
the administrator, which
must be open on the
external firewall.
Custom FQDN Mapping
provides access via DNS
and requires new DNS
entries and possibly a new
SSL certificate and IP
address.
Security Administration
Administering your security policy involves defining resources and then creating access control rules that
determine the availability of those resources.
Topics:
•
Defining Resources on page 18
•
Managing Access Control with an Access Policy on page 20
•
Access Control for Bi‐Directional Connections on page 21
•
Design Guidelines for Access Rules on page 22
Defining Resources
You have some flexibility when you specify a resource type for a given object on your network. For example, you
might define a Web application narrowly as a URL resource for business partners; employees, on the other
hand, might be given access to an entire domain, including the Web application.
Topics:
•
Web Resources on page 19
•
Client/Server Resources on page 19
•
File Shares on page 20
Advantages
Convenient access to Web and file system resources from
any Web browser that supports SSL and has JavaScript
enabled.
No client configuration or administration tasks.
Supports the use of aliases to hide internal host names in the
browser address bar.
Single sign‐on to back‐end Web servers.
A good option for providing business partner access, because
it does not require any client configuration or administration.
Custom Port Mapping and Custom FQDN Mapping handle
Web programming technologies such as AJAX without the
limitations of URL rewriting used in translation.
SonicWall SMA Connect Tunnel 12.0 Deployment Planning Guide
18
Planning Your VPN