Overview of implementation
30 Avaya VPNmanager Configuration Guide Release 3.7

Syslog

The security gateway has a syslog messaging facility for logging system error messages. The
message can be automatically sent to a destination running a Syslog server.

Client IP address pooling

Access control devices (ACD), such as firewalls, guard networks from unauthorized users.
Analyzing source addresses is one method ACDs use to decide which packets can enter a
network. The addresses that ISPs dynamically assign to VPNremote Client users is naturally
blocked because it is impossible to know ahead of time which address is ass igned. You need to
configure the VPNremote Client IP address pools feature with the source IP addres ses that can
be recognized by an ACD so that user access is not blocked.

SSL for Directory Server

As an added benefit, all communications with the directory server can be secured by SSL
(Secure Sockets Layer).
You can configure your VPN to run SSL at any time. However it is recommended that you
configure SSL before you put the VPN into service, so that the VPN services do not have to be
stopped.
Sequence to configure your VPN
The suggested order to set up your VPN is as follows. Refer to the chapters in this
VPNmanager Administrator’s Guide for details about how to create and configure these
features.
1. Create a VPN domain
2. Create the VPN
3. Create a security gateway
4. Configure needed static routes on the gateway
5. Create IP groups
6. Associate IP groups with the security gateway
7. Associate IP groups with the VPN
8. Create new users
9. Associate users with VPNs
10. Create a VPNremote Client address pool on the gateway