VPN Network

A Virtual Private Network (VPN ) is suitable for users who require secure and encrypted connections across their network infrastructure. It enables encrypted communication between remote clients and a secure gateway, allowing users to access resources on the local network.

Remote clients must have proper authorization on their device to establish a remote connection through a VPN tunnel. They can access networks and services based on site-specific and VPN network policies.

You can create only one VPN network per site. A VPN network can be created only when a secure gateway is deployed at the site.

The following procedure creates a VPN network:

  1. Tap the LAN tile on the Instant On home screen. The Networks screen is displayed.
  2. Tap to create a new network. The Create Network screen is displayed.
  3. Select VPN as Network type.
  4. Under Identification, enter a Name for your network.
  5. Under Properties, enter the Listening port for the VPN server. The default port is 51820.

    When the UDP protocol on the WAN port is already in use by an existing port forwarding policy, the following error banner message is displayed: The UDP protocol on WAN port (portID) is used by the (policyName) policy.

  6. Under IP Addressing, enter the Network address of the VPN server. The Subnet mask is auto-generated based on the secured gateway SKU model and displayed as read-only.

    This step defines how clients and devices will obtain IP addresses when connecting to the VPN network.

  7. Under Tunneled destination Networks, define which LAN networks are accessible through the VPN tunnel by selecting one of the following options:
    • All wired networks—Select this option to include all available wired LAN networks in the VPN tunnel. This is the default option.
    • Selected Wired Networks—Select this option to allow only selected wired LAN networks to be included in the VPN tunnel. Select at least one network from the list.
  8. Tap Done.

    Once completed, a VPN network is created, and the corresponding policy is automatically created to allow access to the selected destinations.

Network Options

Select Network Priority to assign a Quality of Service priority to the network’s traffic. Higher-priority networks are favored over lower-priority networks when the connection is congested.

Under Network Priority, select one of the following priority levels:

  • Low—The lowest priority, for bulk transfers and other non-critical traffic that can tolerate delay
  • Medium (default)—The default priority, for traffic that is not time-sensitive, such as most standard applications (best effort).
  • High—A higher priority for latency-sensitive traffic, such as video streaming and video conferencing.
  • Very High—The highest priority, for traffic that is highly sensitive to delay and jitter, such as voice (VoIP).

Bandwidth Control

Bandwidth Control limits the bandwidth available to the network. Under Bandwidth Limits, select one or both of the following, and then set the rate with the corresponding slider (maximum 1 Gbps):

  • Download—Sets the maximum download rate for the network.
  • Upload—Sets the maximum upload rate for the network.