162
SONICWALL SONICOS ENHANCED 2.5 ADMINISTRATOR’S GUIDE
C
HAPTER
29:
Configuring VPN Policies
Currently Active VPN Tunnels
A list of currently active VPN tunnels is displayed in this section. The table lists the name of the VPN
Policy, the local LAN IP addresses, and the remote destination network IP addresses as well as the
peer gateway IP address.
Configuring GroupVPN Policies
SonicWALL GroupVPN facilitates the set up and deployment of multiple SonicWALL Global VPN
Clients by the SonicWALL security appliance administrator. GroupVPN is only available for
SonicWALL Global VPN Clients and it is recommended you use XAUTH/RADIUS or third party
certificates in conjunction with the Group VPN for added security.
Â
Cross Reference: For more information on the SonicWALL Global VPN Client, see the SonicWALL
Global VPN Client Administrator’s Guide. For more information on the SonicWALL Global Security
Client, see the SonicWALL Global Security Client Administrator’s Guide.
The default GroupVPN configuration allows you to support SonicWALL Global VPN Clients without
any further editing of the VPN policy, except to check the Enable box for GroupVPN in the VPN
Policies table.
SonicWALL supports four GroupVPN policies. You can create GroupVPN policies for the DMZ, LAN,
WAN, and WLAN zones. These GroupVPN policies are listed in the VPN policies tables as WAN
Group VPN, LAN GroupVPN, DMZ GroupVPN, and WLAN GroupVPN. For these GroupVPN
policies, you can choose from IKE using Preshared Secret or IKE using 3rd Party Certificates for
your IPSec Keying Mode.
9
Tip: You can easily create GroupVPN policies using the VPN Policy Wizard. For complete step-by-
step instructions on using the VPN Policy Wizard, see Chapter 51 Configuring VPNS with the VPN
Policy Wizard.
The following instructions explain configuring GroupVPN using the SonicWALL Management
Interface.
Â
Cross Reference: See the GroupVPN Setup in SonicOS Enhanced technote on the SonicWALL
documentation Web site http://www.sonicwall.com for more GroupVPN configuration information.