31.03.2014 Views

Kerio Control — Administrator's Guide - Kerio Software Archive

Kerio Control — Administrator's Guide - Kerio Software Archive

Kerio Control — Administrator's Guide - Kerio Software Archive

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuration Assistant<br />

Other interfaces are considered as not used and added to the group Other Interfaces. For<br />

these interfaces, it will be necessary to define corresponding traffic rules manually (e.g. DMZ<br />

creation rule).<br />

When using failover, only two Internet Connections may be applied, one for the<br />

primary, and the other as a failover.<br />

General notes<br />

• A default gateway must not be set on any of the local interfaces.<br />

• If the interface configuration does not correspond with the real network configuration,<br />

edit it (e.g. if the firewall uses multiple interfaces for the local network, move<br />

corresponding interfaces to the group Trusted/Local Interfaces).<br />

Define traffic policy<br />

The network rules wizard demands only the data that is essential for creating a basic set of<br />

traffic rules:<br />

1. In the Configuration Assistant dialog, click Define traffic policy.<br />

2. Enable the <strong>Kerio</strong> <strong>Control</strong> Administration and VPN services, if you want to establish VPN<br />

connections, or to remotely administer <strong>Kerio</strong> <strong>Control</strong>.<br />

3. Click Next.<br />

4. Select <strong>Kerio</strong> <strong>Control</strong> services to be available from the Internet:<br />

• VPN Services — connection to the <strong>Kerio</strong> VPN server or IPsec VPN server. Enable<br />

these services if you want to create VPN tunnels and/or connect remotely to the<br />

local network by using <strong>Kerio</strong> VPN Client or IPsec VPN clients.<br />

• <strong>Kerio</strong> <strong>Control</strong> Administration — enables remote administration of <strong>Kerio</strong> <strong>Control</strong>.<br />

This option allows HTTPS traffic on port 4081 (port of the administration interface<br />

cannot be changed).<br />

5. Click Next.<br />

6. Make any other services on the firewall or servers in the local network available from the<br />

Internet (mapping).<br />

7. Click Add.<br />

In the Inbound policy dialog, you can configure the following parameters:<br />

24

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!