Barracuda Networks NG Network Access Client SP4 Administrator's Manual page 146

Barracuda networks
Hide thumbs Also See for NG Network Access Client SP4:
Table of Contents

Advertisement

List 10–5 Advanced Settings tab – Data integrity and encryption (ESP) section
Parameter
Encryption algorithm
[AES]
Tunnel Mode
[Response (UDP)]
section:
Tunnel Settings
List 10–6 Advanced Settings tab – Tunnel Settings section
Parameter
Virtual Adapter Configuration
[Default: Direct assignment]
Compression
[Yes]
Use Access Control Service
NAC intercept VPN connection
[Default: Yes]
Access Control Timeout [Default: 30]
WLAN Roaming [Default: Yes]
Fast Reconnect [Default: Yes]
Reconnect immidiately
One Time Password
[No]
Allow ENA Connection
[Yes]
Allow Sending Offline Rule Set
[Yes]
Silent Mode (No Keep Alive)
[No]
Keep alive (seconds)
[10]
Soft Hearbeat [Default: No]
Enable VPN Tunnel Probing [Default:
Yes]
Check Round Trip Time (RTT)
[Default: Yes]
144 VPN Component Configuration
Description
The algorithm to be used for encryption.
The protocol to be used for tunnel traffic. The available options depend on the chosen proxy type:
- Response (UDP)
for Socks 5
- Reliability (TCP)
for HTTP Proxy and Socks 4
- Selecting
No Proxy
gives access to both protocol types and offers an additional one called
(Hybrid)
indicating a combination of Response (UDP) and Reliability (TCP).
Description
The method to be used for gathering IP addresses.
- Direct assignment
- uses WMI (Windows Management Instrumentation) for assigning the IP address;
recommended if DHCP is not available due to security aspects.
- Use internal DHCP assignment
assigning the IP address
- Assign IP address manually
- IP address is entered manually in NIC properties
Yes
triggers the Barracuda NG VPN Client to request compressed traffic. The server may or may not accept
the request depending on both its configuration and the license type assigned to the VPN client. Client
compression is only available to those clients that have assigned a secure connector license.
Note:
The gateway hosting the VPN server must hold a valid BOB license to use this feature. Refer to the
respective product guide for licensing details.
Note:
To activate compression operability, the VPN Service needs to be restarted after BOB license installation.
Validate the client's status through the Access Control Service before a VPN connection is established.
Configure here whether the Health Agent should intercept the VPN connection phase or wait until a VPN
connection is established. Recommended value: No.
Timeout value in seconds for the VPN Service to wait for the Health Agent. Recommended value: 30.
Different IP addresses from the same profile are tried if a connection breaks. Recommended value: Yes.
Choose here whether to be prompted for user name and password on every connection attempt or not,
enabling seamless automatic reconnecting. This is also important in conjunction with one-time passwords.
Recommended value: Yes.
Reconnect immidiately upon a connection break if set to Yes.
The behavior for reconnecting.
If set to Yes, then the password is queried anew when reconnecting.
If set to no, then reconnection is automatically performed without a password query.
Allows/blocks ENA (Exclusive Network Access) connections.
Note:
For successful VPN connection establishment between a server forcing ENA and a client, this value must be
set to Yes. Otherwise, no connection is possible.
Enable the client to receive and use offline firewall rulesets from the VPN server. Offline firewall rulesets are
effective as long as no VPN connection is active.
Break all non-relevant communication over the VPN tunnel (for example for dial-up connections).
The time value in seconds to keep an idle VPN tunnel alive.
IKeep a VPN tunnel up by interpreting normal VPN traffic as keepalive traffic. Useful if the special keepalive
packets are dropped somewhere between client and server.
Probe a VPN tunnel prior to establishing a VPN connection. If this is set to Yes, the reachability of configured
IP addresses will be tested prior to establishing a tunnel. Recommended value: Yes.
Setting this to
Yes
will activate automatic selecting of the fastest VPN server by measuring the roundtrip
times of all available servers prior to connecting if more than one server IP address has been configured in
the profile. Recommended value: Yes.
- uses the integrated DHCP (Dynamic Host Configuration Protocol) for
Optimized

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the NG Network Access Client SP4 and is the answer not in the manual?

Questions and answers

Related Products for Barracuda Networks NG Network Access Client SP4

Table of Contents

Save PDF