SonicWALL none manual User Authentication

Page 26

Attributes - Defines the status of Tunnel All support. These settings are controlled at the SonicWALL VPN gateway.

Other traffic allowed - If enabled, your computer can access the local network or Internet connection while the VPN connection is active.

Default traffic tunneled to peer - If activated, all network traffic not routed to the SonicWALL VPN gateway is blocked. When you enable the VPN connection with this feature active, the Connection Warning message appears.

Use virtual IP address - Allows the VPN Client to get its IP address via DHCP through the VPN tunnel from the gateway.

Enable this connection when the program is launched - Establishes the VPN connection policy as the default VPN connection when you launch the SonicWALL Global VPN Client.

Immediately establish security when connection is enabled - Negotiates the first phase of IKE as soon as the connection is enabled instead of waiting for network traffic transmission to begin. This setting is enabled by default.

Automatically reconnect when an error occurs - With this feature enabled, if the Global VPN Client encounters a problem connecting to the peer, it keeps retrying to make the connection. This feature allows a Global VPN Client to make a connection to a VPN connection that is temporarily disabled, without manual intervention. If the connection error is due to an incorrect configuration, such as the DNS or IP address of the peer gateway, then the connection must be manually corrected. Check the Log Viewer to determine the problem and then edit the connection. This option is enabled by default. If an error occurs with this option disabled during an attempted connection, the Global VPN Client logs the error, displays an error message dialog box, and stops the connection attempt.

Automatically reconnect when waking from sleep or hibernation - Automatically re-enables the VPN connection policy after the computer wakes from a sleep or hibernation state. This setting is disabled by default.

Execute logon script when connected - Allows the Global VPN Client to perform domain authentication after logging into the SonicWALL VPN Gateway and establishing a secure tunnel.

Run the following command when connection is established - Allows a program to be automatically executed, with optional arguments, when successful VPN connections are established.

User Authentication

The User Authentication page allows you to specify a username and password when user authentication is required by the gateway. If the SonicWALL VPN gateway does not support the saving (caching) of a username and password, the settings in this page are not active and the message The peer does not allow saving of username and password appears at the bottom of the page.

Remember my username and password - Enables the saving of your username and password for connecting to the SonicWALL VPN gateway.

Managing VPN Connection Policy Properties Page 25

Image 26
Contents Global VPN Client Administrators Guide Table of Contents Configuring SonicWALL Security Appliances for Managing VPN Connection PoliciesInstallShield Silent Response File Appendix a Creating and Deploying the Default.rcf File forAppendix B SonicWALL Global VPN Client Installation Using Command Line InterfaceAppendix D Installing the Global VPN Client with a Appendix E- Log Viewer MessagesSonicWALL Global VPN Client Features SonicWALL Global VPN ClientNew Features in SonicWALL Global VPN Client Global VPN Client Enterprise/Global Security Client Using the Right Administrator’s GuidesAbout this Guide SonicWALL Global Security Client and Global VPN ClientCopyright Notice Conventions Used in this GuideIcons Used in this Guide SonicWALL Pocket Global VPN ClientInstalling the SonicWALL Global VPN Client Limited WarrantyUsing the Setup Wizard Installing the SonicWALL Global VPN Client Adding VPN Connection Policies Understanding VPN Connection PoliciesCreating a VPN Connection Policy Using the New Connection WizardUnderstanding Digital Certificates Select Remote Access or Office Gateway and then click Next Importing a VPN Configuration File Configuring a Dial-Up VPN Connection Launching the SonicWALL Global VPN Client Making VPN ConnectionsAccessing Redundant VPN Gateways Enabling a VPN Connection Connecting changes to ProvisioningEstablishing Multiple Connections Selecting a Certificate Username and Password AuthenticationEntering a Pre-Shared Key Connection Warning Disabling a VPN ConnectionChecking the Status of a VPN Connection Creating a VPN Policy Shortcut Open SonicWALL Global VPN Client Opens the program window Specifying Global VPN Client Launch OptionsManaging the Global VPN Client System Tray Icon Managing VPN Connection Policy Properties GeneralUser Authentication Peers Peer Information Dialog BoxManaging VPN Connection Policy Properties Connection Virtual IP ConfigurationStatus ActivityRenaming a Connection Policy Managing VPN Connection PoliciesArranging Connection Policies Deleting a Connection PolicyTroubleshooting the SonicWALL Global VPN Client Managing CertificatesType The type of message Information, Error, or Warning Understanding the Global VPN Client LogConfiguring the Log Configuring Auto-LoggingGenerating a Help Report Viewing Help Topics Accessing Technical SupportUninstalling the SonicWALL Global VPN Client Windows 98 SE Double-clickAdd/Remove ProgramsSonicWALL Global VPN Client Licenses Group VPN Connections Supported by Each SonicWALL ModelDownloading Global VPN Client Software and Documentation Select Global VPN Client from the Applicable Services menuActivating Your SonicWALL Global VPN Clients Global VPN Client License Support by SonicWALL ModelSoftware License Agreement for Sonicwall Globalvpn Client Exports License Miscellaneous SonicWALL Global VPN Client Support How the Global VPN Client uses the default.rcf FileDeploying the default.rcf File Replace the Existing SonicWALL Global VPN Client.rcf File SWClientPolicy version =9.0 Creating the default.rcf FileDefault.rcf File Tag Descriptions FlagsPage SWClientPolicy version=9.0 Connections Sample default.rcf FileSWClientPolicy Flags PeerPeer Connection Peer Connection Connections /SWClientPolicy Troubleshooting the deafult.rcf File Creating the Silent InstallationSetup.exe -s Playing Back the Silent InstallationUsing Setup.log to Check for Errors Setup.exe -s -f1path\ResponseFileCommand Line Options Command Line ExamplesAppendix E- Log Viewer Messages Log Viewer MessagesDiffie-Hellman group generator length has not been set Failed to build dead peer detection packet Failed to construct quick mode hash payload Failed to find Oakley group specified in the SA payload Failed to set the Ipsec ESP attributes into the phase 2 SA Is not a valid XAuth status Info Peer certificate missing key value Received invalid message ID notify Sending phase 2 delete for SA lifetime for phase 2 is seconds Received an unencrypted packet when crypto active SonicWALL Global VPN Client 4.0 Administrator’s Guide SonicWALL, Inc Rev C, 10/07