VPN Network
A Virtual Private Network (VPN ) is suitable for users who require secure and encrypted connections across their network infrastructure. It enables encrypted communication between remote clients and a secure gateway, allowing users to access resources on the local network.
Remote clients must have proper authorization on their device to establish a remote connection through a VPN tunnel. They can access networks and services based on site-specific and VPN network policies.
You can create only one VPN network per site. A VPN network can be created only when a secure gateway is deployed at the site.
The following procedure creates a VPN network:
- Tap tile on the Instant On home screen. The screen is displayed.
- Tap
to create a new network. The screen is displayed.
- Select as .
- Under Identification, enter a for your network.
- Under Properties, enter the Listening port for the VPN server. The default port is 51820.
When the UDP protocol on the WAN port is already in use by an existing port forwarding policy, the following error banner message is displayed: The UDP protocol on WAN port (portID) is used by the (policyName) policy.
- Under IP Addressing, enter the Network address of the VPN server. The Subnet mask is auto-generated based on the secured gateway SKU model and displayed as read-only.
This step defines how clients and devices will obtain IP addresses when connecting to the VPN network.
- Under Tunneled destination Networks, define which LAN networks are accessible through the VPN tunnel by selecting one of the following options:
- All wired networks—Select this option to include all available wired LAN networks in the VPN tunnel. This is the default option.
- Selected Wired Networks—Select this option to allow only selected wired LAN networks to be included in the VPN tunnel. Select at least one network from the list.
- Tap .
Once completed, a VPN network is created, and the corresponding policy is automatically created to allow access to the selected destinations.