Celestix E6600 Installation Manual page 35

E series
Table of Contents

Advertisement

Public address – enter the address that external clients will use to connect to the
ii.
network.
Note: While using an IP address is supported, the FQDN is a best practice.
b. Advanced – define client parameters and assign the appliance network adapter that
DirectAccess service will use.
Installation type – select the DirectAccess functionality to deploy:
i.
Client Group – designate an AD security group that will manage devices that
ii.
connect through DirectAccess; leave blank to include all remote devices.
Network Interfaces – select interfaces for DirectAccess traffic.
iii.
IP-HTTPS certificate – if a third-party certificate will be used to bind the Internet
iv.
network adapter, navigate to and select it. If it needs to be imported first, complete
the following:
c. GPO and NLS
Group Policy Object (GPO) – leave fields blank to configure the default options,
i.
otherwise designate predefined AD policy groups that will manage settings for
devices and servers.
Network Location Server – the NLS server will be installed on the appliance unless
ii.
an external server is designated.
d. Client Settings
Connection Name – create a name for the network connection that end users will
i.
recognize.
34
• Behind an edge device (with two network adapters) – one adapter
connects to the perimeter network, and the other connects to the internal
network.
• Behind an edge device (with one network adapter) – the adapter connects
to the internal network.
For example: da.example.com
• Full DirectAccess installation – bidirectional tunnels for remote client access
and management.
• Client management only – configure tunnel for remote client management.
1. Internal – specify the internal, or LAN, network adapter in the drop menu.
2. Internet – optional; if two adapters are used, specify the Internet, or WAN,
network adapter in the drop menu.
a. Click the Import button.
b. Certificate Import – navigate to and select the certificate that will be used for
authentication.
c. Password – enter the certificate passphrase.
d. Click the Import button.
e. The imported certificate should display in the Certificate field. If not, use the
drop menu to select it.
1. Client GPO – specify the name for the AD policy that will manage client
access.
2. Server GPO – specify the name for the AD policy that will manage access to
the DirectAccess server.
1. NLS Certificate – if an SSL certificate will be used, navigate to and select it. If
it needs to be imported first, complete the following:
a. Click the Import button.
b. Certificate Import – navigate to and select the certificate that will be
used for authentication.
c. Password – enter the certificate passphrase.
d. Click the Import button.
e. The imported certificate should display in the Certificate field. If not,
use the drop menu to select it.
2. NLS URL – if an external NLS server is deployed, enter the HTTPS URL.
E Series Installation Guide

Advertisement

Table of Contents
loading

Table of Contents