5.1

Table Of Contents
7 In the Configure panel, click IP Pool.
8 Select the IP pool that you want to change the order for.
9
Click the Move Up (
) or Move Down ( ) icon.
Working with Private Networks
You can add, edit, or delete a private network that a remote user can access.
Add private network
Add the network that you want the remote user to be able to access.
Procedure
1 In the vSphere Client, select Inventory > Hosts & Clusters.
2 Select a datacenter resource from the inventory panel.
3 Click the Network Virtualization tab.
4 Click the Edges link.
5 Double-click a vShield Edge instance.
6 Click the VPN tab.
7 Click the SSL VPN-Plus tab.
8 In the Configure panel, click Private Networks.
9
Click the Add (
) icon
The Add Private Network dialog box opens.
10 Type the private network IP address.
11 Type the netmask of the private network.
12 (Optional) Type a description for the network.
13 Specify whether you want to send private network and internet traffic over the SSL VPN-Plus enabled
vShield Edge or directly to the private server by bypassing the vShield Edge.
14 If you selected Send traffic over the tunnel, select Enable TCP Optimization to optimize the internet
speed.
Conventional full-access SSL VPNs tunnel sends TCP/IP data in a second TCP/IP stack for encryption over
the internet. This results in application layer data being encapsulated twice in two separate TCP streams.
When packet loss occurs (which happens even under optimal internet conditions), a performance
degradation effect called TCP-over-TCP meltdown occurs. In essence, two TCP instruments are correcting
a single packet of IP data, undermining network throughput and causing connection timeouts. TCP
Optimization eliminates this TCP-over-TCP problem, ensuring optimal performance.
15 Type the port numbers that you want to open for the remote user to access the corporate internal
servers/machines like 3389 for RDP, 20/21 for FTP, and 80 for http. If you want to give unrestricted access
to the user, you can leave the Ports field blank.
16 Specify whether you want to enable or disable the private network.
17 Click OK.
What to do next
n
Add IP pool.
Chapter 9 vShield Edge Management
VMware, Inc. 123