WatchGuard Technologies Water Heater SSL VPN Manuale Utente

Pagina di 195
vi
WatchGuard SSL VPN Gateway
Allowing ICMP traffic  ............................................................................................................................ 46
To enable ICMP traffic 
........................................................................................................................ 46
CHAPTER 4  Configuring Firebox SSL VPN Gateway Network Connections 
................... 47
Configuring Network Information 
.................................................................................................. 47
General Networking 
............................................................................................................................. 48
Name Service Providers 
...................................................................................................................... 50
To enable split DNS 
............................................................................................................................. 50
To edit the HOSTS file 
......................................................................................................................... 50
Dynamic and Static Routing  .............................................................................................................. 51
Configuring Network Routing 
.......................................................................................................... 51
Configuring Dynamic Routing 
......................................................................................................... 52
Enabling RIP Authentication for Dynamic Routing 
..................................................................... 52
Changing from Dynamic Routing to Static Routing 
................................................................... 53
Configuring a Static Route 
................................................................................................................ 53
Static Route Example 
......................................................................................................................... 54
Configuring Firebox SSL VPN Gateway Failover  ......................................................................... 55
To specify Firebox SSL VPN Gateway failover 
................................................................................ 55
Configuring Internal Failover 
........................................................................................................... 55
Controlling Network Access 
.............................................................................................................. 56
Configuring Network Access 
............................................................................................................ 56
Specifying Accessible Networks 
....................................................................................................... 57
Enabling Split Tunneling  ..................................................................................................................... 57
To enable split tunneling 
................................................................................................................... 58
Configuring User Groups 
................................................................................................................... 58
Denying Access to Groups without an ACL 
................................................................................. 58
To deny access to user groups without an ACL 
............................................................................. 59
Improving Voice over IP Connections  ............................................................................................ 59
Enabling Improving Voice over IP Connections 
............................................................................ 59
To improve latency for UDP traffic 
.................................................................................................. 60
CHAPTER 5  Configuring Authentication and Authorization 
.................................................. 61
Configuring Authentication and Authorization  ......................................................................... 61
Configuring Authentication without Authorization 
.................................................................... 63
The Default Realm 
.............................................................................................................................. 63
Using a Local User List for Authentication 
..................................................................................... 63
Configuring Local Users 
..................................................................................................................... 64
Adding Users to Multiple Groups 
..................................................................................................... 64
Changing Password for Users 
.......................................................................................................... 64
Using LDAP Authorization with Local Authentication 
................................................................ 65
Changing the Authentication Type of the Default Realm 
...................................................... 65
Configuring the Default Realm 
........................................................................................................ 65
Creating Additional Realms 
.............................................................................................................. 66
Removing Realms 
............................................................................................................................... 67
Using SafeWord for Authentication  ................................................................................................ 67
Configuring Secure Computing SafeWord Authentication 
........................................................ 67
Configuring SafeWord Settings on the Access Gateway 
............................................................. 67