Chapter 13

Example Configuration

Introducing an up-and-running Barracuda NG Network Access Client environment involves several components, like global objects, trustzone settings, Access Control Service and gateway firewall configuration.

This section presents an overview how simple an environment can be set up. For further details of individual parameters please refer to the appropriate sections.

Beginning to use Barracuda NG Network Access Client does not necessarily require complex policy rule sets. Although rule sets will become more elaborated due to required exceptions, the sample includes only one policy within the rule set Local Machine.

Fig. 13–1Example configuration – environment

The client LAN has the IP-range 10.0.8.0/24, the protected servers are located in the network 172.16.0.0/24. Additionally to the protected servers, one server acts as Microsoft Domain Controller and as remediation server for updating the antivirus patterns. This server has the IP address 172.16.0.10 - you need to grant access to this computer even for unknown or unhealthy clients.

The other servers located within the server segment should be protected - for example access to these servers should only be available for clients conforming to the corporate health policy.

The health policy requires to have a client installed and the personal firewall to be enabled. In addition, the company uses Trend Micro antivirus products, so it is required to have the AV engine enabled and to receive regular anti-virus ipattern updates.

172 Example Configuration

Page 174
Image 174
Barracuda Networks VERSION SP4 manual Example Configuration, 1Example configuration environment