Virtual Private Network (VPN)

The VPN tab allows you to define Virtual Private Network (VPN) gateways. Defining VPN gateways using this mechanism simplifies the creation of VPNs that include more than two gateways.

Note: Each gateway in this type of configuration must be able to connect to the other ones direcly--without going through another gateway.

Setting up a VPN requires the following operations:

  1. Defining the VPN gateways.
  2. Adding a rule for the VPN.

Defining VPN Gateways

Use the VPN tab on the Policy Edit page to define and edit the VPN gateways. The meanings and uses of the specific fields in the VPN dialog are as follows:

Adding a Rule

After you define the gateways in your VPN, add a Packet Filter rule for this VPN. Use the Packet Filtering tab on the Policy Edit page to add VPN rules

When you add a packet filter rule for VPN:

Note: Any addresses may be used in VPN rules, however only addresses that intersect with a VPN Gateway and the address specified in the rule will apply. Therefore, the simplest way to have all Screens in the VPN communicate (without creating an Address Group that explicitly contains them) is to use "*" "*" as the Addresses in the rule.