Client - SonicWALL SonicOS Enhanced 2.2 Administrator's Manual

Sonicwall internet security appliance
Table of Contents

Advertisement

Client

5. Click the Client tab, select any of the following settings you want to apply to your GroupVPN policy.
Cache XAUTH User Name and Password - allows the Global VPN Client to cache the user name
and password. Select from Single Session (default), Never, or Always.
Allow Traffic to - Client network traffic matching destination networks of each gateway is sent
through the VPN tunnel of that specific gateway. Select from Split Tunnels, This Gateway Only, or
All Secured Gateways.
Set Default Route as this Gateway - Enable this check box if all remote VPN connections access
the Internet through this SA. You can only configure one SA to use this setting.
Use DHCP to obtain Virtual IP for this Connection - allows the VPN Client to obtain an IP address
using DHCP over VPN.
Require Distributed Security Client for this Connection - only allows a VPN connection from a
remote computer running the SonicWALL Distributed Security Client, which provides policy enforced
firewall protection before allowing a Global VPN Client connection.
Note:
For more information on the SonicWALL Global Security Client and Distributed Security Client, see the
SonicWALL Global Security Client Administrator's Guide.
Use Default Key for Simple Client Provisioning - uses Aggressive mode for the initial exchange
with the gateway and VPN clients uses a default Preshared Key for authentication.
6. Click OK.
Configuring GroupVPN with IKE using 3rd Party Certificates
To configure GroupVPN with IKE using 3rd Party Certificates, follow these steps:
Alert!
Before configuring GroupVPN with IKE using 3rd Party Certificates, your certificates must be installed
on the SonicWALL.
1. In the VPN>Settings page click the Notepad icon under Configure. The VPN Policy window is
displayed.
General
2. In the Security Policy section, select IKE using 3rd Party Certificates from the IPSec Keying
Mode menu. The SA name is Group VPN by default and cannot be changed.
3. Select a certificate for the SonicWALL from the Gateway Certificate menu.
VPN Page 101

Advertisement

Table of Contents
loading

Table of Contents