Cisco SA520-K9 Administration Guide - Page 161

Configuring VPN, Remote Management, Specifying the Network, Resources for SSL VPN,

Page 161 highlights

Configuring VPN Configuring SSL VPN for Browser-Based Remote Access 7 • When two policies are in conflict, a more specific policy takes precedence over a general policy. For example, a policy for a specific IP address takes precedence over a policy for a range of addresses that includes this IP address. A policy can be offered to the VPN Tunnel, Port Forwarding, or both. After you define a policy, it goes into effect immediately. However, if Remote Management (RMON) is not enabled, SSL VPN access will be blocked. See RMON (Remote Management), page 197. If you are creating a policy that applies to a network resource, you first need to configure a record for the network resource. See Specifying the Network Resources for SSL VPN, page 163. STEP 1 Click VPN > SSL VPN Server > SSL VPN Policies. The SSL VPN Policies window opens. STEP 2 In the Query area, choose which policies to display in the List of SSL VPN Policies table. • View List of SSL VPN Policies for: Choose Global for all users, Group for a particular group, or User for a particular user. • Available Groups: If you chose Group as the query type, choose the name from this list. • Available Users: If you chose User as the query type, choose the name from this list. • Click Display to run the query. STEP 3 To add an SSL VPN policy, click Add. Other options: Click the Edit button to edit an entry. To delete an entry, check the box and then click Delete. To select all entries, check the box in the first column of the table heading. After you click Add or Edit, the SSL VPN Policy Configuration window opens. STEP 4 In the Policy For area, enter the following information: • Policy For: Choose the type of policy: Global, Group, or User. If you choose Group, also choose the group from the Available Groups list. If you choose User, also choose the user from the Available Users list. Cisco SA500 Series Security Appliances Administration Guide 161

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Configuring VPN
Configuring SSL VPN for Browser-Based Remote Access
Cisco SA500 Series Security Appliances Administration Guide
161
7
When two policies are in conflict, a more specific policy takes precedence
over a general policy. For example, a policy for a specific IP address takes
precedence over a policy for a range of addresses that includes this IP
address.
A policy can be offered to the VPN Tunnel, Port Forwarding, or both.
After you define a policy, it goes into effect immediately. However, if Remote
Management (RMON) is not enabled, SSL VPN access will be blocked. See
RMON
(Remote Management), page 197
.
If you are creating a policy that applies to a network resource, you first need to
configure a record for the network resource. See
Specifying the Network
Resources for SSL VPN, page163
.
STEP 1
Click
VPN
> SSL VPN Server > SSL VPN Policies
.
The SSL VPN Policies window opens.
STEP
2
In the
Query
area, choose which policies to display in the List of SSL VPN Policies
table.
View List of SSL VPN Policies for:
Choose
Global
for all users,
Group
for a
particular group, or
User
for a particular user.
Available Groups:
If you chose
Group
as the query type, choose the name
from this list.
Available Users:
If you chose
User
as the query type, choose the name from
this list.
Click
Display
to run the query.
STEP 3
To add an SSL VPN policy, click
Add
.
Other options:
Click the
Edit
button to edit an entry. To delete an entry, check the
box and then click
Delete
. To select all entries, check the box in the first column of
the table heading.
After you click Add or Edit, the SSL VPN Policy Configuration window opens.
STEP 4
In the
Policy For
area, enter the following information:
Policy For:
Choose the type of policy: Global, Group, or User. If you choose
Group, also choose the group from the Available Groups list. If you choose
User, also choose the user from the Available Users list.