Quick Reference Guide

Table Of Contents
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
Table of Contents | 7
Configuring Keepalives. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .95
Configuring Dead Peer Detection. . . . . . . . . . . . . . . . . . . . . . . . . . . . . .96
Configuring NetBIOS Bridging with VPN . . . . . . . . . . . . . . . . . . . . . . . . . .97
Chapter 6 Virtual Private Networking Using SSL
Understanding the Portal Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .99
Planning for SSL VPN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .100
Creating the Portal Layout . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .101
Configuring Domains, Groups, and Users . . . . . . . . . . . . . . . . . . . . . . . .104
Configuring Applications for Port Forwarding. . . . . . . . . . . . . . . . . . . . . .104
Adding Servers. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .105
Adding A New Host Name . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .106
Configuring the SSL VPN Client. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .106
Configuring the Client IP Address Range. . . . . . . . . . . . . . . . . . . . . . .107
Adding Routes for VPN Tunnel Clients . . . . . . . . . . . . . . . . . . . . . . . .108
Replacing and Deleting Client Routes . . . . . . . . . . . . . . . . . . . . . . . . .109
Using Network Resource Objects to Simplify Policies . . . . . . . . . . . . . . .109
Adding New Network Resources . . . . . . . . . . . . . . . . . . . . . . . . . . . . .109
Configuring User, Group, and Global Policies . . . . . . . . . . . . . . . . . . . . .110
Viewing SSL VPN Policies . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .112
Adding an SSL VPN Policy. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .113
Chapter 7 Managing Users, Authentication, and Certificates
Adding Authentication Domains, Groups, and Users . . . . . . . . . . . . . . . .116
Creating a Domain . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .117
Creating a Group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .119
Creating a New User Account . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .120
Setting User Login Policies. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .121
Changing Passwords and Other User Settings . . . . . . . . . . . . . . . . . .123
Managing Certificates. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .124
Viewing and Loading CA Certificates . . . . . . . . . . . . . . . . . . . . . . . . . .126
Viewing Active Self Certificates . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .126
Obtaining a Self Certificate from a Certificate Authority . . . . . . . . . . . .127
Managing your Certificate Revocation List (CRL) . . . . . . . . . . . . . . . .129
Chapter 8 VPN Firewall and Network Management
Performance Management. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .131
Bandwidth Capacity . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .132
Features That Reduce Traffic. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .132
Features That Increase Traffic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .134
Using QoS to Shift the Traffic Mix . . . . . . . . . . . . . . . . . . . . . . . . . . . .137
Tools for Traffic Management. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .137
Changing Passwords and Administrator Settings . . . . . . . . . . . . . . . . . .137
Enabling Remote Management Access . . . . . . . . . . . . . . . . . . . . . . . . . .139
Using the Command Line Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . .141