
More detailed information for customized ports in this link: There is also the option to change the SSL VPN Server Port manually under the " Global Setting" tab. SSL VPN uses Port 443 by default for establishing a connection. Last, assign a DNS server that will be used by the VPN clients when connected to the SSL VPN tunnel.ĭ. Note: Make sure to define a range that is not conflicting with any existing or known subnet on your USG! Choose that range later for the " Assign IP Pool". Otherwise, select the specific subnets to which you need access on the " Network List".Ĭreate a new address-object of the type “ RANGE” and configure a range that will be assigned to the clients while connected to the SSL VPN. Scroll down to “ Network Extension (Full Tunnel Mode)” and tick “ Force all client traffic to enter SSL VPN tunnel” in order to have access to all Firewall's network while connected to the SSL VPN. Click on create new object > user/group to add user if desired. Click “Add” and enter a name for the tunnel, leave the zone as “SSL_VPN” and move the needed users to the “Selected User/Group Objects” on the right side. Navigate to Configuration > VPN > SSL VPNĬ. Log in to the unit by entering its IP address and the credentials for an admin account (by default, username is “admin”, password is “1234”)ī. Guide for SecuExtender setup on Windows 3. Please check this article content below for more detailed information.

The following video provides the needed steps to setup the Firewall device and client station. This handbook describes how to set up a SSL VPN tunnel on our business firewall series with the help of the SecuExtender software with an example setup on a Windows device and providing direct link to more advanced setup such as 2FA, authentication with Active Directory, MAC OS and troubleshooting information. In those cases, you still can use SSL to establish a VPN Tunnel. In some occasions, building up a VPN via L2TP or IPSec client might be unsuitable.
