Watchguard VPN v10.0 Manuel d'utilisateur

Naviguer en ligne ou télécharger Manuel d'utilisateur pour Matériel informatique Watchguard VPN v10.0. WatchGuard VPN v10.0 User Manual Manuel d'utilisatio

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer

Résumé du contenu

Page 1 - IPSec Administrator Guide

WatchGuard®Mobile VPN with IPSec Administrator GuideWatchGuard Mobile VPN v10.0 Revised: November 28, 2007

Page 2

About Mobile VPN Client Configuration Files8Mobile User VPNAbout Mobile VPN Client Configuration FilesWith Mobile VPN with IPSec, the network security

Page 3 - Mobile VPN with IPSec

Administrator Guide 9Configuring the Firebox for Mobile VPN3 Use the instructions provided here to go through each screen of the wizard. Click Next af

Page 4

Configuring the Firebox for Mobile VPN10Mobile User VPN6 Direct the flow of Internet traffic: Select an option for Internet traffic. You can allow all

Page 5 - Get the user’s .wgx file

Administrator Guide 11Configuring the Firebox for Mobile VPN8 Create the virtual IP address pool: Click Add to add one IP address or an IP address ran

Page 6 - Mobile User page

Modifying an Existing Mobile VPN Profile12Mobile User VPNAdding Users to a Firebox Mobile VPN Group To create an Mobile VPN tunnel with the Firebox, r

Page 7 - Administrator Guide 5

Administrator Guide 13Modifying an Existing Mobile VPN Profile3 Click Edit.The Edit MUVPN Extended Authentication Group dialog box appears.Use the fol

Page 8

Modifying an Existing Mobile VPN Profile14Mobile User VPNtimeouts for the Mobile VPN group are always ignored because you set timeouts in the individu

Page 9 - Before You Begin

Administrator Guide 15Modifying an Existing Mobile VPN ProfilePhase2 SettingsSelect the proposal and key expiration settings for the Mobile VPN tunnel

Page 10 - 2 Click Add

Modifying an Existing Mobile VPN Profile16Mobile User VPNDefining advanced Phase 1 settingsTo define advanced Phase 1 settings for an Mobile VPN user

Page 11 - Administrator Guide 9

Administrator Guide 17Configuring WINS and DNS Servers2 From the Type drop-down list, select ESP or AH as the proposal method. Only ESP is supported a

Page 12 - Mobile User VPN

ii Mobile User VPNADDRESS:505 Fifth Avenue SouthSuite 500Seattle, WA 98104SUPPORT: www.watchguard.com/supportU.S. and Canada +877.232.3531All Other Co

Page 13 - Administrator Guide 11

Locking Down an End-User Profile18Mobile User VPNLocking Down an End-User ProfileYou can use the advanced settings to lock down the end-user profile s

Page 14

Administrator Guide 19Configuring Policies to Filter Mobile VPN TrafficConfiguring Policies to Filter Mobile VPN TrafficIn a default configuration, Mo

Page 15 - 3 Click Edit

Re-creating End-User Profiles20Mobile User VPNUnder MUVPN Group, Policy Manager displays the authentication server, in parentheses, for the Mobile VPN

Page 16 - 4 Click the IPSec Tunnel tab

Administrator Guide 21Distributing the Software and ProfilesDistributing the Software and ProfilesWatchGuard® recommends distributing end-user profile

Page 17 - 6 Click the Resources tab

Additional Mobile VPN Topics22Mobile User VPNTerminating IPSec connectionsTo fully stop VPN connections, the Firebox must be restarted. Removing the I

Page 18

Administrator Guide 233 Mobile VPN Client Installation and ConnectionThe WatchGuard® Mobile VPN with IPSec client is installed on an employee computer

Page 19 - Administrator Guide 17

Installing the Mobile VPN with IPSec Client24Mobile User VPN> Windows Firewall > Change Settings > Exceptions) for UDP port 4500. This will e

Page 20

Administrator Guide 25Installing the Mobile VPN with IPSec ClientImporting the end-user profileWhen the computer restarts, the WatchGuard Mobile VPN C

Page 21 - Add individual policies

Connecting the Mobile VPN Client26Mobile User VPNIf the password you use is your password on an Active Directory or LDAP server and you choose to stor

Page 22 - Re-creating End-User Profiles

Administrator Guide 27Connecting the Mobile VPN ClientStart your connection to the Internet through a Dial-Up Networking connection or LAN connection.

Page 23 - Additional Mobile VPN Topics

Administrator Guide 11 Configure the Firebox X Edge to use Mobile VPN with IPSecThe WatchGuard® Mobile VPN with IPSec client is a software application

Page 24

Seeing Mobile VPN Log Messages28Mobile User VPN4 Use the Connection Mode drop-down list to set the connection behavior you want for this profile. -

Page 25 - Connection

Administrator Guide 29Securing Your Computer with the Mobile VPN FirewallSecuring Your Computer with the Mobile VPN FirewallThe WatchGuard® Mobile VPN

Page 26

Securing Your Computer with the Mobile VPN Firewall30Mobile User VPN4 From the Stateful Inspection drop-down list, select when connected or always. I

Page 27 - Administrator Guide 25

Administrator Guide 31Securing Your Computer with the Mobile VPN Firewall3 Define friendly networks and create firewall rules as described in the subs

Page 28

Securing Your Computer with the Mobile VPN Firewall32Mobile User VPNTo create a rule, click New. Use the four tabs in the Firewall Rule Entry dialog b

Page 29 - Administrator Guide 27

Administrator Guide 33Securing Your Computer with the Mobile VPN FirewallLocal tabUse the Local tab to define the local IP address and ports that are

Page 30 - Mobile User VPN client icon

Securing Your Computer with the Mobile VPN Firewall34Mobile User VPNRemote tabUse the Remote tab to define the remote IP address or addresses and port

Page 31 - Enabling the link firewall

Administrator Guide 35Securing Your Computer with the Mobile VPN Firewall

Page 32 - Enabling the desktop firewall

Securing Your Computer with the Mobile VPN Firewall36Mobile User VPN

Page 33 - Creating firewall rules

Enabling Mobile VPN for a Firebox User Account2Mobile User VPNThe Firebox X Edge creates a .wgx file for a user when a Firebox user’s account is confi

Page 34 - General tab

Administrator Guide 3Configuring Global Mobile VPN Client Settings10 Set MUVPN key expiration in kilobytes and/or hours. The default values are 8192 K

Page 35 - Local tab

Distributing the Software and Profiles4Mobile User VPN1 You can choose to make the .wgx file read-only so that the user cannot change the security pol

Page 36 - Applications tab

Administrator Guide 5Distributing the Software and Profiles• The end-user profileThis file contains the user name, shared key, and settings that enabl

Page 37 - Administrator Guide 35

Distributing the Software and Profiles6Mobile User VPN

Page 38

Administrator Guide 72 Using Fireware Policy Manager to Configure Mobile VPN with IPSec The WatchGuard® Mobile VPN with IPSec client is a software app

Commentaires sur ces manuels

Pas de commentaire