User Guide

Configuration Wizards
Using the Remote Access VPN Wizard
Cisco ISA500 Series Integrated Security Appliances Administration Guide 60
2
After the settings are saved, the security appliance is set as an IPsec VPN server.
Remote users that belong to the specified user groups can use the specified
group policy to establish the VPN connections. If you check Client Internet
Access, the corresponding advanced NAT rules are automatically created to allow
remote VPN clients to access the Internet over the VPN tunnels.
Using Remote Access VPN Wizard for SSL Remote Access
This section describes how to use the Remote Access VPN Wizard to configure
the SSL VPN group policies and specify the users and user groups for SSL remote
access. Refer to the following steps:
Starting the Remote Access VPN Wizard with SSL Remote Access,
page 60
Configuring SSL VPN Gateway, page 60
Configuring SSL VPN Group Policy, page 62
Configuring SSL VPN User Groups, page 65
Viewing SSL VPN Summary, page 66
Starting the Remote Access VPN Wizard with SSL Remote Access
STEP 1 Click Configuration Wizards > Remote Access VPN Wizard.
STEP 2 Choose SSL Remote Access from the VPN Tunnel Type drop-down list.
STEP 3 Click Next.
Configuring SSL VPN Gateway
STEP 4 Use the SSL VPN - Configuration page to configure the SSL VPN gateway
settings.
STEP 5 In the Gateway (Basic) area, enter the following information:
Gateway Interface: Choose the WAN port that traffic passes through the
SSL VPN tunnel.
Gateway Port: Enter the port number used for the SSL VPN gateway. By
default, SSL operates on port 443. However, the SSL VPN gateway should
be flexible enough to operate on a user defined port. The firewall should