22.2 Usage of the SSL-VPN interface

Note: If the port for SSL-VPNinterface is changed, it is also necessary to modify the Service item in this rule!

22.2 Usage of the SSL-VPN interface

For access to the interface, most of common graphical web browsers can be used (however, we recommend to use Microsoft Internet Explorer version 6.0 or Firefox/Netscape/Mozilla/SeaMonkey with the core version 1.3 and later). Specify URL in the browser in the

https://server/

format, where server represents the DNS name or IP address of the WinRoute host. If SSL-VPNuses another port than the default port for HTTPS (443), it is necessary to specify the used port in the URL, e.g.

https://server:12345/

Upon a connection to the server, the SSL-VPNinterface’s welcome page is displayed localized to the language set in the browser. If the language defined as preferred is not available, the English version will be used.

For access to the network by SSL-VPN , authentication to the particular domain at the login page by username and password is required. Any operations with shared files and folders are performed under the identity of the user currently logged in.

Figure 22.4 Clientless SSL-VPN — login dialog

Method of specification of the login name depends on the configuration of the particular user account in WinRoute (see chapter 13):

If an account is defined in the local user database, the username must be specified without the domain (e.g. jsmith).

Warning: Only accounts authenticated in Active Directory or Windows NT domain (NT/Kerberos 5 authentication) can be used for access to the SSL-VPNinterface. Ac-

357

Page 357
Image 357
Kerio Tech Firewall6 manual Usage of the SSL-VPN interface, Https//server12345, 357