SonicWALL SSL-VPN 2000 Administrator's Manual page 246

Secure remote access appliance
Hide thumbs Also See for SSL-VPN 2000:
Table of Contents

Advertisement

In the Add Client Route dialog box, enter a destination network in the Destination Network
Step 7
field. For example, enter the IPv4 network address 10.202.0.0. For IPv6, enter the IPv6 network
address in the form 2007::1:2:3:0.
IPv6 is supported on SonicWALL SSL-VPN models 2000 and higher.
For an IPv4 destination network, type the subnet mask in the Subnet Mask/Prefix field using
Step 8
decimal format (255.0.0.0, 255.255.0.0, or 255.255.255.0). For an IPv6 destination network,
type the prefix, such as 112.
Click Add.
Step 9
Click OK.
Step 10
Enabling Group NetExtender Client Routes
To enable group NetExtender client routes for groups that are already created, perform the
following steps:
Navigate to Users > Local Groups.
Step 1
Click the configure icon next to the group you want to configure.
Step 2
In the Edit Group Settings page, select the Nx Routes tab.
Step 3
Select the Add Global NetExtender Client Routes checkbox.
Step 4
Click OK.
Step 5
Enabling Tunnel All Mode for Local Groups
This feature is for external users, who will inherit the settings from their assigned group upon
login. Tunnel all mode ensures that all network communications are tunneled securely through
the SonicWALL SSL VPN tunnel. To enable tunnel all mode, perform the following tasks:
Navigate to Users > Local Groups.
Step 1
Click the configure icon next to the group you want to configure.
Step 2
In the Edit Group Settings page, select the Nx Routes tab.
Step 3
Select Enable from the Tunnel All Mode drop-down list.
Step 4
Click OK.
Step 5
You can optionally tunnel-all SSL VPN client traffic through the NetExtender connection by
Note
entering 0.0.0.0 for the Destination Network and Subnet Mask/Prefix in the Add Client
Routes dialog box.
Adding Group Policies
With group access policies, all traffic is allowed by default. Additional allow and deny policies
may be created by destination address or address range and by service type.
The most specific policy will take precedence over less specific policies. For example, a policy
that applies to only one IP address will have priority over a policy that applies to a range of IP
addresses. If there are two policies that apply to a single IP address, then a policy for a specific
service (for example RDP) will take precedence over a policy that applies to all services.
SonicWALL SSL VPN 4.0 Administrator's Guide
Users > Local Groups
233

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ssl-vpn 4000

Table of Contents