09.07.2015 Views

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Firebox</strong> <strong>SSL</strong> Overvieware specific to your site, such as the <strong>Firebox</strong> <strong>SSL</strong> IP address, netmask,default gateway IP address, and DNS addresses. After youcomplete the basic connection, you then configure the settingsspecific to <strong>VPN</strong> operation, such as the options for authentication,authorization, and group-based access control, kiosk operation,host checking, portal pages, and IP pools.All <strong>Firebox</strong> <strong>SSL</strong> administration and monitoring is performedthrough the <strong>Firebox</strong> <strong>SSL</strong> Remote Admin Terminal window,which provides access to the <strong>Administration</strong> Tool and a varietyof standard network monitoring tools, including Ethereal NetworkMonitor, xNetTools, Traceroute, fnetload, and SystemMonitor. The <strong>Firebox</strong> <strong>SSL</strong> Remote Admin Terminal window alsoprovides access to the Real-time Monitor, where you can view alist of current <strong>VPN</strong> users and groups and close the <strong>VPN</strong> connectionfor any user or groupYou will need to provide remote <strong>VPN</strong> users with the URL of the<strong>Firebox</strong> <strong>SSL</strong> and a list of the resources that they can access.Remote users can log in with their usual credentials and do notneed to perform any configuration of the Secure Access client orany application clients, resulting in minimal user support.<strong>Firebox</strong> <strong>SSL</strong> OperationThe <strong>Firebox</strong> <strong>SSL</strong> performs the following functions:• Authentication• Termination of encrypted sessions• Access control (based on permissions)• Data traffic relay (when the first three functions are met)The <strong>Firebox</strong> <strong>SSL</strong> operates as follows:1 A remote user obtains the Secure Access client by accessinga secure web URL and providing authentication credentials.2 After a successful login, the <strong>Firebox</strong> <strong>SSL</strong> establishes a securetunnel.3 As the remote user attempts to access network resourcesacross the <strong>VPN</strong> tunnel, the <strong>Firebox</strong> <strong>SSL</strong> encrypts all networktraffic destined for the organization’s intranet and forwards8 <strong>Firebox</strong> <strong>SSL</strong> <strong>VPN</strong> <strong>Gateway</strong> <strong>Administration</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!