8.2 Configuring SSL VPN Servers

The Configuration page allows you to view the configuration status and to configure the features of a cluster or a single SSL VPN server.

All configuration changes are applied from the SSL VPNs page. The links from this page allow you to accept or cancel any changes, but the changes are not sent to the SSL VPN server from the other pages.

  1. In the Administration Console, Devices > SSLVPNs > Edit.

    To edit an SSL VPN server that is not a member of a cluster, click the Edit button next to the server that you want to edit.

    To edit the configuration of a cluster, click the Edit button next to the cluster.

    The Server configuration page is displayed with the following information:

    Services: A list of the services available for configuration.

    Last Changed: The date and time the service was last modified.

    Change By: The distinguished name of the user who made the last modification.

  2. Select one of the following configuration options:

    • The Gateway configuration section allows you to configure the SSL VPN gateway and DNS server list information. You can select one of the following options:

      Basic Configuration: Allows you to configure the gateway. For more information, see Configuring the IP Address, Port, and Network Address Translation.

      Advanced Configuration: Allows you to configure SNAT entries for the SSL VPN server. For more information, see Configuring Route and Source NAT for Enterprise Mode.

      Authentication Configuration: Allows you to configure the Embedded Service Provider. This link is not enabled of you have installed SSL VPN with the 3.1 SP4 Access Gateway.

      For more information, see Configuring Authentication for the ESP-Enabled NetIQ SSL VPN.

      DNS Servers List: Allows you to configure the DNS server list. For more information, see Configuring DNS Servers.

    • The policies section allows you to configure policies that determine the resources a client can access, depending on the role and the security measures adhered to by the client.

      Client Integrity Check Policies: Allows you to configure the client integrity check policies. For more information, see Configuring Policies to Check the Integrity of the Client Machine.

      Client Security Levels: Allows you to configure different security levels for different client roles. For more information see Client Security Levels.

      Traffic Policies: Allows you to configure traffic policies. For more information, see Configuring Traffic Policies.

      Client policies: Allows you to configure policies that determine if clients should access SSL VPN in Kiosk mode only, or in Enterprise mode only, or if the mode selection can be done by the clients. For more information, see Configuring Full Tunneling.

    • The Novell Audit and Alerts section allows you to set up alerts so that notifications are sent when specified events occur.

      Novell Audit Settings: Allows you to configure Novell Audit settings. For more information, see Enabling SSL VPN Audit Events.

      Alerts Settings: Allows you to configure alerts settings. For more information, see Configuring SSL VPN Alerts.

    • The security settings section allows you to view and modify the current security configuration for the SSL VPN server.

      SSL VPN Certificates: Allows you to configure certificate details for SSL VPN. For more information, see Configuring Certificate Settings.

  3. To apply and save changes, select one of the following actions:

    • OK: To save all the configuration changes that have been made, click OK. When you leave this page, the changes are accepted and the SSL VPN server is scheduled for an update.

    • Cancel: To close without saving any pending changes, click Cancel, then click OK at the confirmation dialog box.

    • Revert: To cancel configuration changes that you have already accepted and return to the previous configuration, click Revert.