Chapter 12 SSL VPN
USG FLEX H Series User’s Guide
185
Figure 131 Network Access Mode: Split Tunnel Mode
SSL VPN Policy
An SSL VPN policy allows the Zyxel Device to perform the following tasks:
• limit user access to specific applications or file sharing server on the network.
• allow user access to specific networks.
• assign private IP addresses and provide DNS/WINS server information to remote users to access
internal networks.
SSL Access Policy Objects
The SSL access policies reference the following objects. If you update this information, in response to
changes, the Zyxel Device automatically propagates the changes through the SSL policies that use the
object(s). When you delete an SSL policy, the objects are not removed.
Please note that you cannot delete an object that is referenced by other settings.
12.2 The SSL VPN Screen
Configure the settings in this screen to create a new or edit an existing SSL access policy.
Table 92 Objects
OBJECT TYPE
OBJECT
SCREEN
DESCRIPTION
User Accounts User Account/
User Group
Configure a user account or user group to which you want to apply this SSL
access policy.
Application SSL
Application
Configure an SSL application object to specify the type of application and the
address of the local computer, server, or web site SSL users are to be able to
access.
IP Pool Address Configure an address object that defines a range of private IP addresses to
assign to user computers so they can access the internal network through a
VPN connection.
Server
Addresses
Address Configure address objects for the IP addresses of the DNS and WINS servers that
the Zyxel Device sends to the VPN connection users.
VPN Network Address Configure an address object to specify which network segment users are
allowed to access through a VPN connection.