Enabling Muvpn Access For A Firebox User Account - Watchguard Firebox X20E User Manual

Firmware version 8.6 all firebox x edge e-series standard and wireless models
Hide thumbs Also See for Firebox X20E:
Table of Contents

Advertisement

Configuring IPSec Mobile User VPN
names to IP addresses. The trusted interface of the Edge must have access to these servers. Type a
DNS server and WINS server IP address in the text boxes near the bottom of the Mobile User page.

Enabling MUVPN access for a Firebox user account

Add a new Firebox user or edit a Firebox user, as described in "Using Local Firebox
1
Authentication" on page 158.
Click the MUVPN tab.
2
Select the Enable MUVPN for this account check box.
3
Type a shared key in the related field.
4
The .wgx file is encrypted with this shared key. The user enters the shared key when the .wgx file
is imported. Do not give the shared key to any user that is not authorized to use this Firebox user
account.
Type the virtual IP address in the related field.
5
The virtual IP address must be an address on the Firebox X Edge trusted or optional network that
is not used. This address is used by the remote computer to connect to the Firebox X Edge.
From the Authentication Algorithm drop-down list, select the type of authentication.
6
The options are MD5-HMAC and SHA1-HMAC.
From the Encryption Algorithm drop-down list, select the type of encryption.
7
The options are DES-CBC, 3DES-CBC, AES 128-bit, AES 192-bit, or AES 256-bit.
Set MUVPN key expiration in kilobytes and/or hours. The default values are 8192 KB and 24
8
hours.
To remove a size and/or time expiration, set the value to zero (0).
From the VPN Client Type drop-down list, select Mobile User if the remote user is connecting
9
from a desktop or laptop computer.
Select the All traffic uses tunnel (0.0.0.0/0 IP Subnet) check box if the remote client sends all
10
its traffic (including usual web traffic) through the VPN tunnel to the Firebox X Edge. This can also
let the MUVPN client connect with other networks that the Edge connects to.
If you do not select this check box, the remote user can connect with the Firebox X Edge trusted
or optional network only. You must select this check box for the remote user to be able to
connect to:
- Networks on the other side of a Branch Office VPN tunnel that the Edge has connected.
- Computers on the Edge's optional network.
- Networks that are behind a static route on the trusted or optional interface. For more
information, see "Making Static Routes" on page 69.
Click Submit.
11
212
Firebox X Edge e-Series

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents