ZyXEL Communications ZyWall USG 2000 User Manual page 376

Unified security gateway
Hide thumbs Also See for ZyWall USG 2000:
Table of Contents

Advertisement

Chapter 22 SSL VPN
Table 117 VPN > SSL VPN > Access Privilege > Add/Edit (continued)
LABEL
User/Group
Create New
User Object
SSL Application
List (Optional)
Create New
Application
Object
Network
Extension
(Optional)
Enable Network
Extension
Assign IP Pool
DNS/WINS
Server 1..2
Network List
Create New
Address Object
376
DESCRIPTION
The Selectable User/Group Objects list displays the name(s) of the
user account and/or user group(s) to which you have not applied an SSL
access policy yet.
To associate a user or user group to this SSL access policy, select a user
account or user group and click >> to add to the Selected User/
Group Objects list. You can select more than one name.
To remove a user or user group, select the name(s) in the Selected
User/Group Objects list and click <<.
Click this to display a screen you use to create a new user account or
user group name (see
Section 37.2.1 on page 618
The Selectable Application Objects list displays the name(s) of the
SSL application(s) you can select for this SSL access policy.
To associate an SSL application to this SSL access policy, select a name
and click >> to add to the Selected Application Objects list. You can
select more than one application.
To remove an SSL application, select the name(s) in the Selected
Application Objects list and click <<.
Click this to create a new SSL application object. Refer to
page 691
for more information.
Select this option to create a VPN tunnel between the authenticated
users and the internal network. This allows the users to access the
resources on the network as if they were on the same local network.
Clear this option to disable this feature. Users can only access the
applications as defined by the selected SSL application settings and the
remote user computers are not made to be a part of the local network.
Define a separate pool of IP addresses to assign to the SSL users. Select
it here.
The SSL VPN IP pool cannot overlap with IP addresses on the ZyWALL's
local networks (LAN and DMZ for example), the SSL user's network, or
the networks you specify in the SSL VPN Network List.
Select the name of the DNS or WINS server whose information the
ZyWALL sends to the remote users. This allows them to access devices
on the local network using domain names instead of IP addresses.
To allow user access to local network(s), select a network name in the
Selectable Address Objects list and click >> to add to the Selected
Address Objects list. You can select more than one network.
To block access to a network, select the network name in the Selected
Address Objects list and click <<.
Click this to create a new network object. Refer to
631
for more information.
for details).
Chapter 45 on
Chapter 38 on page
ZyWALL USG 2000 User's Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall usg 1000

Table of Contents