NETGEAR SSL312 manual V2.0, May

Models: SSL312

1 122
Download 122 pages 23.62 Kb
Page 56
Image 56

NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual

addresses. If two policies apply to a single IP address, then a policy for a specific service (for example RDP) will take precedence over a policy that applies to all services.

Note: User policies take precedence over all group policies and group policies take precedence over all global policies, regardless of the policy definition (A user policy that allows access to all IP addresses will take precedence over a group

policy that denies access to a single IP address).

To define group access policies:

1.In the Group Policies section of the Group Settings menu, click Add Policy. An Add Policy menu displays.

Figure 4-8

2.From the Apply Policy To pull-down menu, select whether the policy will be applied to a predefined network resource, an individual host, a range of addresses or all addresses.

3.In the Policy Name field, define a name for the policy.

Note: SSL VPN Concentrator policies apply to the destination address(es) of the SSL VPN connection, not the source address. You cannot permit or block a specific

IP address on the Internet from authenticating to the SSL VPN Concentrator through the policy engine. That type of policy would need to be defined by a firewall rule.

4.Select the appropriate policy:

If your policy applies to a predefined network resource, select the name of the resource from the Defined Resource pull-down menu. For information about creating network resources, refer to “Using Network Resource Objects to Simplify Policies” on page 4-20.

4-10

Setting Up User and Group Access Policies

v2.0, May 2007

Page 56
Image 56
NETGEAR SSL312 manual V2.0, May