![]() |
Creating a Virtual Private Network |
![]() |
Example of Virtual Private Networks |
Note: There can be more than one instance of the same rule added to this list. This is because it is possible that an administrator would want to use the same rule template twice, and assign a different value for the "Flow" field. Use caution when selecting rule templates so that you do not select the same instance of a template more times than what you intended.
![]() | Left to Right indicates that the Source and Destination of the Connection will get written directly to the rule as it is written into the Rule Base File. |
![]() | Right to Left indicates that the Source and Destination of the Connection will be reversed when it is written to the Rule Base File. |
The default Security Agreement is "Host Only" which will not permit the Enterprise Firewall Manager to update any of the configuration files for this Managed Firewall.
Note that the Recipient firewall must have "Host Only" selected for its Security Agreement. When the recipient firewall is cloned, the source's assigned Security Agreement will be assigned to the recipient.
Note that the SPI value 0 is reserved to indicate that no security association exists. The set of SPI values in the range of 1 through 255 are reserved to the Internet Assigned Numbers Authority (IANA) for future use.
Note also that if you are going to have more than one active tunnel to the same target, you will need a different target SPI for each active tunnel.
Depending upon your security requirements for this tunnel, choose from among the following policies:
Note: Anytime you click on a checkbox that pertains to a Predefined Service, and you click on "OK", you must activate these changes via the Connection Activation window. You do not need to activate after changing either of the Transparent Proxy checkboxes as these two do not pertain to Predefined Services.
![]() |
Using the Configuration Client to Define a Security Policy |
Warning: Use of this Service can open your Firewall up to security exposures. Use this service with extreme caution.
![]() | Create new |
![]() | Carrier |
![]() | Create new modem |
![]() | Modem |