7
ProSecure Unified Threat Management (UTM) Appliance
Configure Web Content Filtering . . . . . . . . . . . . . . . . . . . . . . . . . . . . .199
Configure Web URL Filtering . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .206
HTTPS Scan Settings. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .209
Manage Digital Certificates for HTTPS Scans . . . . . . . . . . . . . . . . . . .213
Specify Trusted Hosts. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .218
Configure FTP Scans . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .219
Set Web Access Exception Rules . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .221
Create Custom Groups for Web Access Exceptions . . . . . . . . . . . . . .228
Create Custom Categories for Web Access Exceptions . . . . . . . . . . .231
Set Scanning Exclusions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .235
Chapter 7 Virtual Private Networking
Using IPSec Connections
Considerations for Dual WAN Port Systems
(Multiple WAN Port Models Only). . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .237
Use the IPSec VPN Wizard for Client and Gateway Configurations . . . .239
Create Gateway-to-Gateway VPN Tunnels with the Wizard . . . . . . . .239
Create a Client-to-Gateway VPN Tunnel . . . . . . . . . . . . . . . . . . . . . . .243
Test the Connection and View Connection and Status Information . . . . .258
Test the NETGEAR VPN Client Connection. . . . . . . . . . . . . . . . . . . . .258
NETGEAR VPN Client Status and Log Information . . . . . . . . . . . . . . .260
View the UTM IPSec VPN Connection Status . . . . . . . . . . . . . . . . . . .260
View the UTM IPSec VPN Log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .261
Manage IPSec VPN Policies . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .262
Manage IKE Policies. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .262
Manage VPN Policies. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .269
Configure Extended Authentication (XAUTH) . . . . . . . . . . . . . . . . . . . . .277
Configure XAUTH for VPN Clients . . . . . . . . . . . . . . . . . . . . . . . . . . . .277
User Database Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .278
RADIUS Client Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .279
Assign IP Addresses to Remote Users (Mode Config). . . . . . . . . . . . . . .281
Mode Config Operation. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .281
Configure Mode Config Operation on the UTM . . . . . . . . . . . . . . . . . .281
Configure the ProSafe VPN Client for Mode Config Operation . . . . . .288
Test the Mode Config Connection . . . . . . . . . . . . . . . . . . . . . . . . . . . .295
Modify or Delete a Mode Config Record. . . . . . . . . . . . . . . . . . . . . . . .296
Configure Keep-Alives and Dead Peer Detection . . . . . . . . . . . . . . . . . .297
Configure Keep-Alives . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .297
Configure Dead Peer Detection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .298
Configure NetBIOS Bridging with IPSec VPN . . . . . . . . . . . . . . . . . . . . .299
Configure the PPTP Server (UTM9S Only) . . . . . . . . . . . . . . . . . . . . . . .300
View the Active PPTP Users . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .302
Configure the L2TP Server (UTM9S Only). . . . . . . . . . . . . . . . . . . . . . . .303
View the Active L2TP Users . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .304