Netgear 05200007 User Manual

Page of 186
Reference Manual for the NETGEAR ProSafe VPN Client
5-30
Using the Security Policy Editor
202-10015-01
Configure the Client to Retrieve a New Policy from a Policy 
Server or Web  Address
The client can be configured to periodically check for and then retrieve a new security policy from 
a Web  address, or uniform resource locator (URL). Or, if the client is managed by a policy 
management application, the client registers with its policy server, and then polls this policy server 
to look for and retrieve new security policies. 
If your client isn't preconfigured with the policy distribution URL or policy server details, your 
network security administrator must provide these to you. 
1.
In the Security Policy Editor, click Options>Policy Management. The Policy Management 
dialog box opens.
2.
Select the Use Policy Server check box.
3.
By default, the New policy resets existing connections check box is clear. This means that the 
client does not drop all connections when it retrieves a new policy.
For the client to drop all connections when it retrieves this policy, select this check box.
4.
In the Policy Polling Interval (minutes) box, specify how often the client checks for and 
retrieves a new policy from the Web  address in the Policy URL box; type the number of 
minutes, from 1 through 9999999, between these checks. The default is 1440 minutes (24 
hours). 
5.
In the Policy Distribution Point group, select where to check for new policies: 
If it's a policy management application's policy server, take these steps: 
a.
Click Register and retrieve my policy from a VPN Policy Manager.
b.
In the Server Name box, type the policy server’s machine name or IP address.
c.
In the Server Port box, type the server’s assigned port number. The default is 389
d.
In the Policy Subtree box, type the location, typically the organization unit (OU) and 
organization (O) on the policy server, where security polices are stored. The default is 
ou=VPN Client, o=SafeNet.
e.
The client can register with the policy server with certificates or some other way.
To register without certificates, in Perform policy server registration, accept the default, 
without. Otherwise, click with.
If it's an URL, take these steps:
a.
Retrieve my policy from the following URL (the default).