Netgear SRXN3205 SRXN3205 Reference Manual - Page 129

Virtual Private Networking Using SSL, Understanding the Portal Options

Page 129 highlights

ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual Chapter 7 Virtual Private Networking Using SSL The SRXN3205 ProSafe Wireless-N VPN Firewall provides a hardware-based SSL VPN solution designed specifically to provide remote access for mobile users to their corporate resources, bypassing the need for a pre-installed VPN client on their computers. Using the familiar Secure Sockets Layer (SSL) protocol, commonly used for e-commerce transactions, the SRXN3205 can authenticate itself to an SSL-enabled client, such as a standard web browser. Once the authentication and negotiation of encryption information is completed, the server and client can establish an encrypted connection. With support for 10 concurrent sessions, users can easily access the remote network for a customizable, secure, user portal experience from virtually any available platform. This chapter contains the following sections: • "Understanding the Portal Options" • "Planning for SSL VPN" • "Creating the Portal Layout" • "Configuring Domains, Groups, and Users" • "Configuring Applications for Port Forwarding" • "Configuring the SSL VPN Client" • "Using Network Resource Objects to Simplify Policies" • "Configuring User, Group, and Global Policies" Understanding the Portal Options The SRXN3205's SSL VPN portal can provide two levels of SSL service to the remote user: • VPN Tunnel The SRXN3205 can provide the full network connectivity of a VPN tunnel using the remote user's browser in the place of a traditional IPsec VPN client. The SSL capability of the user's Virtual Private Networking Using SSL 7-1 v1.0, October 2008

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218

ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
Virtual Private Networking Using SSL
7-1
v1.0, October 2008
Chapter 7
Virtual Private Networking
Using SSL
The SRXN3205 ProSafe Wireless-N VPN Firewall provides a hardware-based SSL VPN solution
designed specifically to provide remote access for mobile users to their corporate resources,
bypassing the need for a pre-installed VPN client on their computers. Using the familiar Secure
Sockets Layer (SSL) protocol, commonly used for e-commerce transactions, the SRXN3205 can
authenticate itself to an SSL-enabled client, such as a standard web browser. Once the
authentication and negotiation of encryption information is completed, the server and client can
establish an encrypted connection. With support for 10 concurrent sessions, users can easily access
the remote network for a customizable, secure, user portal experience from virtually any available
platform.
This chapter contains the following sections:
“Understanding the Portal Options”
“Planning for SSL VPN”
“Creating the Portal Layout”
“Configuring Domains, Groups, and Users”
“Configuring Applications for Port Forwarding”
“Configuring the SSL VPN Client”
“Using Network Resource Objects to Simplify Policies”
“Configuring User, Group, and Global Policies”
Understanding the Portal Options
The SRXN3205’s SSL VPN portal can provide two levels of SSL service to the remote user:
VPN Tunnel
The SRXN3205 can provide the full network connectivity of a VPN tunnel using the remote
user’s browser in the place of a traditional IPsec VPN client. The SSL capability of the user’s