ZyXEL ZYWALL USG 100 User Guide - Page 73

SSL VPN, Configuration > VPN > SSL VPN > Access Privilege

Page 73 highlights

Chapter 4 Create Secure Connections Across the Internet • There's a network connectivity problem between the ZyWALL and the ZyWALL IPSec VPN Client: Check that the correct ZyWALL IP address and HTTPS port (if the default port was changed) was entered. Ping the ZyWALL from the computer on which the ZyWALL IPSec VPN Client is installed. If there is no reply, check that the computer has Internet access. If the computer has Internet access, contact the ZyWALL administrator. • The entry is not activated: Make sure that both Enable Configuration Provisioning in Configuration > VPN > IPSec VPN > Configuration Provisioning is selected and that the entry has a yellow Status icon. 4.5 SSL VPN SSL VPN uses remote users' web browsers to provide the easiest-to-use of the ZyWALL's VPN solutions. A user just types the ZyWALL's web address and enters his user name and password to securely access the ZyWALL's network. Here a user uses his browser to securely connect to network resources in the same way as if he were part of the internal network. Figure 31 SSL VPN LAN (192.168.1.X) https:// Web Mail File Share Non-Web Web-based Application Application Server • Click Configuration > Object > SSL Application and configure an SSL application object to specify the type of application and the address of the local computer, server, or web site SSL users are to be able to access. • Click Configuration > VPN > SSL VPN > Access Privilege to configure SSL access policies. • Use the Configuration > VPN > SSL VPN > Global Setting screen to set the IP address of the ZyWALL (or a gateway device) on your network for full tunnel mode access, enter access messages or upload a custom logo to be displayed on the remote user screen. Remote users can access resources on the local network using one of the following methods: • Using a supported web browser Once you have successfully logged in through the ZyWALL, you can access intranet sites, webbased applications, or web-based e-mails using one of the supported web browsers. • Using the ZyWALL SecuExtender client Once you have successfully logged into the ZyWALL, if the SSL VPN access policy has network extension enabled the ZyWALL automatically loads the ZyWALL SecuExtender client program to your computer. With the ZyWALL SecuExtender, you can access network resources, remote desktops and manage files as if you were on the local network. ZyWALL USG100-PLUS User's Guide 73

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140

Chapter 4 Create Secure Connections Across the Internet
ZyWALL USG100-PLUS User’s Guide
73
There’s a network connectivity problem between the ZyWALL and the ZyWALL IPSec VPN Client:
Check that the correct ZyWALL IP address and HTTPS port (if the default port was changed)
was entered.
Ping the ZyWALL from the computer on which the ZyWALL IPSec VPN Client is installed.
If there is no reply, check that the computer has Internet access.
If the computer has Internet access, contact the ZyWALL administrator.
The entry is not activated:
Make sure that both
Enable Configuration Provisioning
in
Configuration > VPN > IPSec
VPN > Configuration Provisioning
is selected and that the entry has a yellow
Status
icon.
4.5
SSL VPN
SSL VPN uses remote users’ web browsers to provide the easiest-to-use of the ZyWALL’s VPN
solutions. A user just types the ZyWALL’s web address and enters his user name and password to
securely access the ZyWALL’s network. Here a user uses his browser to securely connect to network
resources in the same way as if he were part of the internal network.
Figure 31
SSL VPN
• Click
Configuration > Object > SSL Application
and configure an SSL application object to
specify the type of application and the address of the local computer, server, or web site SSL
users are to be able to access.
• Click
Configuration > VPN > SSL VPN > Access Privilege
to configure SSL access policies.
Use the
Configuration > VPN > SSL VPN > Global Setting
screen to set the IP address of the
ZyWALL (or a gateway device) on your network for full tunnel mode access, enter access
messages or upload a custom logo to be displayed on the remote user screen.
Remote users can access resources on the local network using one of the following methods:
Using a supported web browser
Once you have successfully logged in through the ZyWALL, you can access intranet sites, web-
based applications, or web-based e-mails using one of the supported web browsers.
Using the ZyWALL SecuExtender client
Once you have successfully logged into the ZyWALL, if the SSL VPN access policy has network
extension enabled the ZyWALL automatically loads the ZyWALL SecuExtender client program to
your computer. With the ZyWALL SecuExtender, you can access network resources, remote
desktops and manage files as if you were on the local network.
Web Mail
File Share
Web-based Application
https://
Application Server
Non-Web
LAN (192.168.1.X)