Ssl Vpn Tunnel Client Configuration - Cisco QuickVPN - PC Administration Manual

Sa 500 series security appliances administration guide
Hide thumbs Also See for QuickVPN - PC:
Table of Contents

Advertisement

Configuring VPN
Configuring SSL VPN for Browser-Based Remote Access
STEP 2
STEP 3
STEP 4
NOTE
Cisco SA 500 Series Security Appliances Administration Guide
To add a configured host name, click Add in the List of Configured Host Names for
Port Forwarding table.
Other options: Click the Edit button to edit an entry. To delete an entry, check
NOTE
the box and then click Delete. To select all entries, check the box in the first
column of the table heading.
Enter the following information:
Local Server IP Address: Enter the IP address of the internal host machine
or local server.
Fully Qualified Domain Name: Enter the fully qualified domain name for the
TCP application.
Click Apply to save your settings, or click Reset to revert to the saved settings.

SSL VPN Tunnel Client Configuration

An SSL VPN tunnel client provides a point-to-point connection between the
browser-side machine and this security appliance. When a SSL VPN client is
launched from the user portal, a "network adapter" with an IP address from the
corporate subnet, DNS and WINS settings is automatically created. This feature
allows access to services on the private network without any special network
configuration on the remote SSL VPN client machine.
Make sure that the virtual (PPP) interface address of the VPN tunnel client does not
conflict with the address of any physical devices on the LAN. The IP address
range for the SSL VPN virtual network adapter should be either in a different
subnet or non-overlapping range as the corporate LAN.
If the SSL VPN client is assigned an IP address in a different subnet than the
corporate network, a client route must be added to allow access to the private
LAN through the VPN tunnel. In addition, a static route on the private LAN's firewall
(typically this security appliance) is needed to forward private traffic through the
VPN Firewall to the remote SSL VPN client.
As in any IPSec tunnel deployment, the two networks that are joined by the tunnel
must use different IP address ranges in their subnets.
8
184

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents