Netgear FVS336Gv2 – ProSafe Dual WAN Gigabit Firewall with SSL & IPSec VPN 참조 매뉴얼
Set Up Virtual Private Networking with SSL
Connections
448
ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2
5.
To simplify policies, define network resource objects (see
Network resource objects are groups of IP addresses, IP address ranges, and services.
By defining resource objects, you can more quickly create and configure network policies.
By defining resource objects, you can more quickly create and configure network policies.
6.
Configure the SSL VPN policies (see
473).
Policies determine access to network resources and addresses for individual users,
groups, or everyone.
groups, or everyone.
Manage the Portal Layout
The following sections provide information about managing the portal layout:
•
•
•
•
Portal Layouts Overview
You can create a custom screen that remote users see when they log in to the SSL portal.
Because the login screen is customizable, it provides an ideal way to communicate remote
access instructions, support information, technical contact information, or VPN-related news
updates to remote users. The login screen is also suitable as a starting screen for restricted
users; if mobile users or business partners are permitted to access only a few resources, the
login screen that you create presents only the resources that are relevant to these users.
Because the login screen is customizable, it provides an ideal way to communicate remote
access instructions, support information, technical contact information, or VPN-related news
updates to remote users. The login screen is also suitable as a starting screen for restricted
users; if mobile users or business partners are permitted to access only a few resources, the
login screen that you create presents only the resources that are relevant to these users.
You apply portal layouts by selecting one from the available portal layouts in the configuration
of a domain. When you have completed your portal layout, you can apply the portal layout to
one or more authentication domains (see
of a domain. When you have completed your portal layout, you can apply the portal layout to
one or more authentication domains (see
488).
You can also make the new portal the default portal for the SSL VPN gateway.
The VPN firewall’s default portal address is https://<IP_address>/portal/SSL-VPN, in which
the IP address can be either an IPv4 or an IPv6 address. Both types of addresses are
supported simultaneously. The default domain geardomain is assigned to the default
SSL-VPN portal.
the IP address can be either an IPv4 or an IPv6 address. Both types of addresses are
supported simultaneously. The default domain geardomain is assigned to the default
SSL-VPN portal.
88), when you create
a portal with an IPv4 address, the same portal is automatically created with an IPv6 address,
and the other way around; when you create a portal with an IPv6 address, the same portal is
automatically created with an IPv4 address.
and the other way around; when you create a portal with an IPv6 address, the same portal is
automatically created with an IPv4 address.
You can define individual layouts for the SSL VPN portal. The layout configuration includes
the menu layout, theme, portal pages to display, and web cache control options. The default
portal layout is the SSL-VPN portal. You can add additional portal layouts. You can also
make any portal the default portal for the VPN firewall.
the menu layout, theme, portal pages to display, and web cache control options. The default
portal layout is the SSL-VPN portal. You can add additional portal layouts. You can also
make any portal the default portal for the VPN firewall.