Vpn Policies - SonicWALL SonicOS Enhanced 2.2 Administrator's Manual

Sonicwall internet security appliance
Table of Contents

Advertisement

VPN Policies

All existing VPN policies are displayed in the VPN Policies table. Each entry displays the following
information:
Name - user-defined name to identify the Security Association.
Gateway - the IP address of the remote SonicWALL. If 0.0.0.0 is used, no Gateway is displayed.
Destinations - the IP addresses of the destination networks.
Crypto Suite - the type of encryption used
Enable - selecting the check box enables the VPN Policy. Clearing the check box
disables it.
Configure - edit or delete the VPN Policy information. GroupVPN has a Disk icon for
exporting the configuration for SonicWALL Global VPN Clients.
The number of VPN policies defined, policies enabled, and the maximum number of Policies allowed is
displayed below the table.
Currently Active VPN Tunnels
A list of currently active VPN tunnels is displayed in this section. The table lists the name of the VPN
Policy, the local LAN IP addresses, and the remote destination network IP addresses as well as the Peer
Gateway IP address.
Configuring Group VPN on the SonicWALL
SonicWALL VPN defaults to a Group VPN setting. This feature facilitates the set up and deployment of
multiple VPN clients by the administrator of the SonicWALL. Security settings can now be exported to the
remote client and imported into the remote VPN client settings. Group VPN allows for easy deployment
of multiple VPN clients making it unnecessary to individually configure remote VPN clients. Group VPN
is only available for VPN clients and it is recommended to use XAUTH/RADIUS or third party certificates
in conjunction with the Group VPN for added security.
The default GroupVPN configuration allows you to support SonicWALL Global VPN Clients without any
further editing of the VPN policy, except to check the Enable box for GroupVPN in the VPN Policies table.
You can choose from IKE using Preshared Secret or IKE using 3rd Party Certificates for your IPSec
Keying Mode.
Note:
GroupVPN is the default policy name and cannot be changed.
Configuring GroupVPN with IKE using Preshared Secret
To edit the default settings for Group VPN, follow these steps:
Page 98 SonicWALL SonicOS Standard Administrator's Guide

Advertisement

Table of Contents
loading

Table of Contents