trusted
, whose access rules allow access to all networks, services and paths.
• One or several domain names are added to the DNS search list, which means that the
remote user can enter a short name in the Portal's various address fields (for example,
inside instead of inside.example.com if example.com is added to the search list).
• If you chose to enable HTTP to HTTPS redirection, an additional server of the HTTP type
was created to redirect requests made with HTTP to HTTPS, because the portal server
requires an SSL connection.
Default Network
The wizard also creates a default network definition called
intranet
. In short, network
definitions are used to limit a remote user's access rights to different networks. Once a network
definition has been created it can be referenced in an access rule. The access rule states
whether access to the referenced network should be rejected or allowed.
Network definitions can be created, viewed or edited using the
/cfg/vpn #/aaa/
network
command. See the "Groups, Access Rules and Profiles" chapter in the
Application
Guide for VPN
for a full explanation of network definitions in conjunction with access rules.
The
intranet
network definition is configured as Network 1. The subnets included in
intranet
are based on private IP address space reservations as defined in the RFC 1918 document:
• Network address: 192.168.0.0 Network mask: 255.255.0.0
• Network address: 10.0.0.0 Network mask: 255.0.0.0
• Network address: 172.16.0.0 Network mask: 255.240.0.0
Default Services
The following service definitions were configured automatically. Service definitions can be
referenced in access rules to allow or deny access to a specific application or protocol. Service
definitions can be viewed or edited using the
/cfg/vpn #/aaa/service
command.
See the "Groups, Access Rules and Profiles" chapter in the
Application Guide for VPN
for a
full explanation of service definitions.
•
http.
Uses TCP port 80.
•
https.
Uses TCP port 443.
•
web.
Uses TCP ports 20, 21, 80 and 443.
•
smtp.
Uses TCP port 25.
•
pop3.
Uses TCP port 110.
•
imap.
Uses TCP port 143.
Initial Setup
50 User Guide
April 2013
Comments? infodev@avaya.com
Summary of Contents for 3050-VM
Page 1: ...User Guide Avaya VPN Gateway Release 9 0 NN46120 104 Issue 04 04 April 2013 ...
Page 4: ...4 User Guide April 2013 Comments infodev avaya com ...
Page 12: ...12 User Guide April 2013 ...
Page 20: ...New in this release 20 User Guide April 2013 Comments infodev avaya com ...
Page 30: ...Introducing the VPN Gateway 30 User Guide April 2013 Comments infodev avaya com ...
Page 36: ...Introducing the ASA 310 FIPS 36 User Guide April 2013 Comments infodev avaya com ...
Page 74: ...Upgrading the AVG Software 74 User Guide April 2013 Comments infodev avaya com ...
Page 86: ...Managing Users and Groups 86 User Guide April 2013 Comments infodev avaya com ...
Page 130: ...The Command Line Interface 130 User Guide April 2013 Comments infodev avaya com ...
Page 162: ...Supported Ciphers 162 User Guide April 2013 Comments infodev avaya com ...
Page 212: ...Syslog Messages 212 User Guide April 2013 Comments infodev avaya com ...
Page 242: ...Definition of Key Codes 242 User Guide April 2013 Comments infodev avaya com ...
Page 259: ...Creating a Port Forwarder Authenticator User Guide April 2013 259 ...
Page 266: ...Using the Port Forwarder API 266 User Guide April 2013 Comments infodev avaya com ...
Page 274: ...X 509 274 User Guide April 2013 Comments infodev avaya com ...