SMA 210/410 Deployment Guide
Connecting the SMA on a New DMZ
10
13 On the page that displays for SMA to LAN, click
Add
.
14 In the Add Rule window, create a rule to allow access to the LAN for the address group you just created:
15 Click
OK
to create the rule.
This completes Scenario A.
Continue to
and
Testing and Troubleshooting Your Remote Connection
.
From
SMA
To
LAN
Source Port
Any
Service
Any
Source
The address group you just created, such as SMA and
NetExtender.
Destination
Any
Users Allowed
All
Users Excluded
None
Schedule
Always on
Select the following check box(es)
•
Enable Logging
•
Allow Fragmented Packets
NOTE:
Some gateway appliances have a default zone named SSLVPN. Do not select this zone when
configuring for the SMA appliance. The SSLVPN zone is intended for use with the more limited SSLVPN
features that are included in the firewall products.