R3721-F3210-F3171-HP High-End Firewalls VPN Configuration Guide-6PW101

357
Configuring the domain policy
Select VPN > SSL VPN > Domain Management > Basic Configuration from the navigation tree. The
Domain Policy tab appears, as shown in Figure 247.
Figure 247 Basic d
omain policy
Table 50 Configuration items
Item Descri
tion
Enable security check
Select this item to enable security check.
With security check enabled, the SSL VPN system checks a user host based on the
security policy and determines whether to allow the user to access resources according
to the check result.
IMPORTANT:
To implement user host security check, you must also configure the security policy. See
"Configuring a security policy."
Use verification code
Select this item to use verification codes.
After you select this item, users must enter the correct verification codes to log in to the
SSL VPN system.
Enable separate
client
Select this item to enable the separate client function.
After a user logs in to SSL VPN, the SSL VPN client automatically runs. With separate
client enabled, the system automatically closes the SSL VPN web interface, leaving the
client software running alone.
Enable MAC address
binding
Select this item to enable MAC address binding.
With MAC address binding enabled, the SSL VPN system obtains the MAC address of
a user when the user logs in, for user identity authentication or MAC address learning.