Table 46: VPNs Supported (continued)
VPNs
Compact and Expanded Views
Autogenerated Tunnels
Autogenerated VPN Rules
Autogenerated VPN Routes
Related
Documentation
Device-Level VPN in Device Manager Overview
Related
Documentation
Copyright © 2010, Juniper Networks, Inc.
Description
Choose the Compact (default) or Expanded view to create your VPN. Both views offer
the same configuration options.
Create tunnel interfaces on each route-based VPN member automatically. Use the device
tunnel summary to review all autogenerated tunnels in the VPN.
Create all VPN rules with a single click. NSM automatically generates the rules between
each policy-based VPN member. You can review these rules, configure additional rule
options (such as traffic shaping, attack protection, logging, limiting the number of sessions
from each source IP towards servers to a given threshold count, and so on), and then
insert the rules into a security policy.
Automatically add virtual router information using the VPN Manager for each device
based on the routing type. Specify a routing type of topology to autogenerate a route for
all VPN members based on the configured routing type (static or dynamic). This
information changes the tunnel interface data and virtual router data for each device.
To view all VPNs created with VPN Manager, select VPN Manager in the navigation tree.
A list of saved VPNs appears in the main display area in table format. You can add and
delete VPNs from this view.
VPN Manager does not support Manual Key VPNs; to create a Manual Key VPN in NSM,
you must create the VPN at the device level in Device Manager.
System-Level and Device-Level VPN Using NSM Overview on page 196
Device-Level VPN in Device Manager Overview on page 197
VPN Configuration Supported Overview on page 198
For Manual Key VPNs, create the VPN at the device level by manually configuring VPN
information for each security device.
After you have configured the VPN on each security device in the VPN, add VPN rules to
a security policy to create the VPN tunnel (for policy-based VPNs) or to control traffic
through the tunnel (for route-based VPNs).
You can also create AutoKey IKE, L2TP, and L2TP-over-AutoKey IKE VPNs at the device
level.
VPN Configuration Supported Overview on page 198
System-Level VPN with VPN Manager Overview on page 196
Planning Your VPN Using NSM Overview on page 198
Chapter 7: Planning and Preparing VPNs
197
Need help?
Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 and is the answer not in the manual?