SonicWALL none manual Managing VPN Connection Policy Properties

Page 28

DPD Settings - Displays the Dead Peer Detection Settings dialog box.

Check for dead peer every - choose from 5, 10, 15, 20, 25, or 30 seconds.

Assume peer is dead after - choose from 3, 4, or 5 Failed Checks.

Specify the conditions under which DPD packets will be sent - Choose either Only when no traffic is received from the peer or whether or not traffic is received from the peer.

NAT Traversal - Choose one of the following three menu options:

Automatic - Automatically determines whether NAT traversal is forced on or disabled.

Forced On - Forces the use of UDP encapsulation of IPSec packets even when there is no NAPT/ NAT device in between the peers.

Disabled - Disables use of UDP encapsulation of IPSec packets between the peers.

Interface Selection - Defines the interface used by this VPN connection policy.

Automatic - Automatically determines the availability of each interface beginning with the LAN interface. If the LAN interface is not available, the Global VPN Client uses the Dial-Up interface.

LAN Only - Defaults to the LAN interface only. Dial-Up Only - Defaults to the Dial-Up interface only.

LAN Settings - Displays LAN Settings dialog box for specifying the setting used when this connection is enabled over the LAN. Type the IP address in the Next Hop IP Address field to specify the IP address of a different route than the default route. Leaving the setting as zeros instructs the Global VPN Client to use the default route.

Dial-Up Settings - Displays the Dial-Up Settings dialog box, which allows you to select the dial-up profile to use making a dial-up VPN connection.

Use Microsoft dial-up networking - Uses the Microsoft dial-up networking profile you specify for making the VPN connection. Select the Dial-up networking profile from the Phonebook Entry list. Check the Do not hang up the modem when disabling this connection to keep the dial-up network connection active after disabling the VPN connection.

Use a third-partydial-up application - Select this option to use a third party dial-up program. Type the path in the Application field or use the browse ... button to locate the program.

Response Timeout (in seconds) - Specifies a timeout value for the VPN connection attempt.

Maximum Send Attempts - Specifies the number of IKE negotiation retries.

Managing VPN Connection Policy Properties Page 27

Image 28
Contents Global VPN Client Administrators Guide Table of Contents Configuring SonicWALL Security Appliances for Managing VPN Connection PoliciesAppendix a Creating and Deploying the Default.rcf File for Appendix B SonicWALL Global VPN Client Installation UsingInstallShield Silent Response File Command Line InterfaceAppendix D Installing the Global VPN Client with a Appendix E- Log Viewer MessagesSonicWALL Global VPN Client Features SonicWALL Global VPN ClientNew Features in SonicWALL Global VPN Client Using the Right Administrator’s Guides About this GuideGlobal VPN Client Enterprise/Global Security Client SonicWALL Global Security Client and Global VPN ClientConventions Used in this Guide Icons Used in this GuideCopyright Notice SonicWALL Pocket Global VPN ClientInstalling the SonicWALL Global VPN Client Limited WarrantyUsing the Setup Wizard Installing the SonicWALL Global VPN Client Adding VPN Connection Policies Understanding VPN Connection PoliciesUnderstanding Digital Certificates Using the New Connection WizardCreating a VPN Connection Policy Select Remote Access or Office Gateway and then click Next Importing a VPN Configuration File Configuring a Dial-Up VPN Connection Launching the SonicWALL Global VPN Client Making VPN ConnectionsAccessing Redundant VPN Gateways Enabling a VPN Connection Connecting changes to ProvisioningEstablishing Multiple Connections Entering a Pre-Shared Key Username and Password AuthenticationSelecting a Certificate Checking the Status of a VPN Connection Disabling a VPN ConnectionConnection Warning Creating a VPN Policy Shortcut Managing the Global VPN Client System Tray Icon Specifying Global VPN Client Launch OptionsOpen SonicWALL Global VPN Client Opens the program window Managing VPN Connection Policy Properties GeneralUser Authentication Peers Peer Information Dialog BoxManaging VPN Connection Policy Properties Virtual IP Configuration StatusConnection ActivityManaging VPN Connection Policies Arranging Connection PoliciesRenaming a Connection Policy Deleting a Connection PolicyTroubleshooting the SonicWALL Global VPN Client Managing CertificatesType The type of message Information, Error, or Warning Understanding the Global VPN Client LogConfiguring the Log Configuring Auto-LoggingGenerating a Help Report Accessing Technical Support Uninstalling the SonicWALL Global VPN Client Windows 98 SEViewing Help Topics Double-clickAdd/Remove ProgramsSonicWALL Global VPN Client Licenses Group VPN Connections Supported by Each SonicWALL ModelSelect Global VPN Client from the Applicable Services menu Activating Your SonicWALL Global VPN ClientsDownloading Global VPN Client Software and Documentation Global VPN Client License Support by SonicWALL ModelSoftware License Agreement for Sonicwall Globalvpn Client Exports License Miscellaneous Deploying the default.rcf File How the Global VPN Client uses the default.rcf FileSonicWALL Global VPN Client Support Replace the Existing SonicWALL Global VPN Client.rcf File Creating the default.rcf File Default.rcf File Tag DescriptionsSWClientPolicy version =9.0 FlagsPage Sample default.rcf File SWClientPolicySWClientPolicy version=9.0 Connections Flags PeerPeer Connection Peer Connection Connections /SWClientPolicy Troubleshooting the deafult.rcf File Creating the Silent InstallationPlaying Back the Silent Installation Using Setup.log to Check for ErrorsSetup.exe -s Setup.exe -s -f1path\ResponseFileCommand Line Options Command Line ExamplesAppendix E- Log Viewer Messages Log Viewer MessagesDiffie-Hellman group generator length has not been set Failed to build dead peer detection packet Failed to construct quick mode hash payload Failed to find Oakley group specified in the SA payload Failed to set the Ipsec ESP attributes into the phase 2 SA Is not a valid XAuth status Info Peer certificate missing key value Received invalid message ID notify Sending phase 2 delete for SA lifetime for phase 2 is seconds Received an unencrypted packet when crypto active SonicWALL Global VPN Client 4.0 Administrator’s Guide SonicWALL, Inc Rev C, 10/07

none specifications

SonicWALL is a leading cybersecurity company that specializes in providing advanced network security solutions, primarily focused on firewalls and unified threat management. Established in 1991, SonicWALL has become synonymous with high-performance security and is particularly well-regarded for its adaptable solutions that cater to businesses of all sizes.

One of the main features of SonicWALL products is their next-generation firewall technology. These firewalls combine traditional firewall capabilities with modern security features such as intrusion prevention, malware protection, and content filtering. This enables businesses to comply with regulatory requirements while safeguarding their networks against ever-evolving cyber threats. SonicWALL's firewalls are equipped with advanced security protocols that offer deep packet inspection, allowing them to analyze the data flowing through the network meticulously.

SonicWALL's Cloud App Security is another significant component of its technology suite. This service secures cloud applications by providing essential tools that help protect against data breaches and insecure usage. Through broad compatibility with various cloud services, businesses can maintain security without sacrificing the efficiency and productivity benefits that cloud applications provide.

In terms of characteristics, SonicWALL emphasizes simplicity and ease of management. Their products are designed with intuitive user interfaces that simplify configuration and ongoing management. This allows even non-technical users to manage complex security protocols effectively. The SonicWALL Global Management System (GMS) enables centralized management for multiple appliances, ensuring that administrators can monitor their entire network security posture from a single dashboard.

SonicWALL also incorporates advanced threat detection technologies, including its Capture Advanced Threat Protection (ATP) service. Capture ATP leverages deep learning and sandboxing techniques to identify and isolate potential threats before they can affect the network. This proactive approach to security enables businesses to respond to new threats in real-time, enhancing overall protection.

Furthermore, SonicWALL offers scalable solutions, making it a suitable choice for both small businesses and large enterprises. Organizations can select from a range of appliances and services that can be easily scaled as their needs evolve. With a strong focus on customer support and continual innovation, SonicWALL remains a trusted partner in the sphere of network security. Overall, SonicWALL's blend of advanced features, user-friendly management, and robust technologies makes it a formidable player in the cybersecurity landscape.