Policy Settings




Automatic Policy Configuration



When a remote gateway is configured to support the Configuration Exchange, it provides a list of networks that are accessible via VPN Client Gateway. This network topology information, along with the client address are used to describe the security policies for this site configuration. When Automatic Policy Configuration is enabled but the remote Gateway does not supply topology information, the VPN Client will install a default policy that tunnels all traffic to the Gateway. The default value for this setting is Enabled.



Manual Network Topology List



The Network Topology List can be manually defined if the VPN Gateway does not provide a list automatically for the client. You can Add, Modify or Delete Network Topology List entries by using the buttons shown at the bottom of the Policy Configuration dialog. These buttons will be grayed out if the Automatic Policy Configuration option is Enabled.



The Topology Entry Dialog



The Topology Entry Dialog is used whenever you are adding or modifying a Network Topology List entry. Simply configure the Entry Type as either Include or Exclude and enter the required information. When you are finished editing the Topology Entry, press the OK button to accept the entry data or the Cancel button to discard it.



Entry Type


The Entry Type describes how the specified network should be accessed when the Client is connected to the VPN Gateway.


There are two options available:


Include

Defines a network that should be accessed via the VPN Gateway.

Exclude

Defines a network that should be accessed via local connectivity.


Address and Netmask


The Address and Netmask are used to define the Network address and size of the network.

Copyright © 2007, Shrew Soft Inc