CONFIGURATION OF SSL VPN
Basic Guide
Engineer: Mark Anthony Grindulo
Objective: to connect remote users to internal network resources
1. Login to Firewall and check licensing of SSL VPN
2. Go to Network>SSL VPN
a. Enable Deployment Mode as Gateway (since firewall is directly connected to ISP)
b. Select target LAN Interface and WAN Interface, and Click OK
c. Click Start SSL VPN Service
3. Create target Resource/Resources
a. You can create resource group based on your environment.
b. Go to Network>SSL VPN>Resources, click on Add and enter the group details, then OK.
4. Add network resources
a. Select the Resource Group and click add L3VPN App
b. Provide the resource name and protocol
c. Provide the Resource details such as IP or Domain or IP Range, and port.(Configure Local
DNS if you have in your environment). Click OK after.
d. To configure Local DNS just click on the Local DNS link.
5. Configure Users
a. Go to Network>SSL VPN>Local Users>Add Group
b. Provide the group details and click OK
c. On the Same Local User tab, click the User Group and Add User. Provide the Name, this
will be the username. The password can be leave blank as on initial login, users can be
asked to change password. You can also set initial password if you prefer.
6. Configure Roles ( this is to map users access to certain resources)
a. Go to Network>SSL VPN>Roles>Add>Add Role
b. Provide the Role Name
c. Set specific Users/User Group by clicking on Select User/Group tab and click OK.
d. Select Specific Resources/Resources Group by clicking on Select Resource tab and click
OK.
e. Save the Roles setting by clicking on OK.
7. Test VPN Access
a. Go to https://yourpublicIP:4430 (example: https://124.106.102.92:4430)
b. You can login from here or click on Download Client to install the SSL VPN Software.
c. On the software, input the same link, and click on forward arrow icon.
d. Input your Credentials, and since this is an initial login it will ask you to setup a new
password.
e. After logging in you should be able to see a successful login notification and the
resources associated to your account.
8. Customization of Port number where SSL VPN is running.
a. Go to Network>SSL VPN>Login Options and change the HTTPS Port number.
9. Change the password settings
a. Go to Network>SSL VPN>Authentication
10. Configure Local DNS
a. Go to Network>SSL VPN>Local DNS
b. Configure the DNS Server and if you have Local Domain name associated.