User Manual

Using Secure HotSpot
Chapter 9: Setting Your Security Policy 257
You can choose to exclude specific network objects from HotSpot enforcement.
For information, see Using Network Objects on page 129.
Important: SecuRemote VPN software users who are authenticated by the Internal
VPN Server are automatically exempt from HotSpot enforcement. This allows, for
example, authenticated employees to gain full access to the corporate LAN, while
guest users are permitted to access the Internet only.
Note: HotSpot enforcement can block traffic passing through the firewall; however, it
does not block local traffic on the same network segment (traffic that does not pass
through the firewall).
Setting Up Secure HotSpot
To set up Secure HotSpot
1. Enable Secure HotSpot for the desired networks.
See Enabling/Disabling Secure HotSpot on page 258.
2. Customize Secure HotSpot as desired.
See Customizing Secure HotSpot on page 259.
3. Grant HotSpot Access permissions to users on the selected networks.
See Adding and Editing Users on page 363.
4. To exclude specific computers from HotSpot enforcement, by adding or editing
their network objects.
See Adding and Editing Network Objects on page 130.
You must select Exclude this computer/network from HotSpot enforcement
option.
5. Add quick guest users as needed.
See Adding Quick Guest Users on page 367.