5.1

Table Of Contents
SSL VPN-Plus Overview
With SSL VPN-Plus, remote users can connect securely to private networks behind a vShield Edge gateway.
Remote users can access servers and applications in the private networks.
vShield Manager
Adimin
Corporate LAN
vShield Edge
SSL VPN
external
Windows
Server
Remote users connecting
through web access mode
Remote users connecting
through SSL client
Internet
Configure Network Access SSL VPN-Plus
In network access mode, a remote user can access private networks after downloading and installing an SSL
client.
Prerequisites
The SSL VPN gateway requires port 443 to be accessible from external networks and the SSL VPN client requires
the vShield Edge gateway IP and port 443 to be reachable from client system.
Procedure
1 Add an IP Pool on page 104
The remote user is assigned a virtual IP address from the IP pool that you add.
2 Add private network on page 104
Add the network that you want the remote user to be able to access.
3 Add Installation Package on page 105
Create an installation package of the SSL VPN-Plus client for the remote user.
4 Add a User on page 106
Add a remote user to the local database.
5 Add Authentication on page 107
Instead of a local user, you can add an external authentication server (AD, LDAP, Radius, or RSA) which
is bound to the SSL gateway. All users in the bounded authenticated server will be authenticated.
6 Add SSL VPN-Plus Server Settings on page 112
You must add SSL VPN server settings to enable SSL on a vShield Edge interface.
Chapter 9 vShield Edge Management
VMware, Inc. 103