Global VPN client - IP addresses from other then default subnet
10/14/2021 71 People found this article helpful 494,259 Views
Description
This article assists you to configure a different IP addressing scheme (subnet) other than the default subnet for the Global VPN clients.
Resolution
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
NOTE: Virtual Adapter settings are required.
- Login to an application GUI.
- Click Manage in the top navigation menu.
- Navigate to System Setup | Network | Interfaces. Click Add Interface button and selecting the option from the drop down Virtual Interface.
- PIck a zone (such as LAN or a custom one) and select a VLAN tag. Choose a parent interface (LAN interfaces preferred).
- Put an IP address and Subnet mask that you wish to use for the GVC connection.
- Click OK. One does not need to change anything on the Advanced tab.
- Navigate to System Setup| Network | DHCP Server and make sure that the server is Checked.
- Click Add Dynamic button.
- Select Interface Pre-Populate and choose the VLAN interface from the list.
- In Range Start put an IP address that is not the first from the whole range but at least the 3rd one. In this example we used 192.168.100.1 as an interface IP so we have a range from 192.168.100.1 to 192.168.100.254. We need to reserve one IP in front of the DHCP range for a relay IP which we will configure in next steps. So in our case the range start is 192.168.100.3. Range End is up to you. Default Gateway and Subnet Mask should be of course filled according to your settings. In our example it would be Default Gateway: 192.168.100.1 and Subnet Mask: 255.255.255.0.
- Click OK.
- Navigate to Connectivity | VPN | DHCP over VPN and click Configure (Please make sure it is set to Central Gateway).
- Select Use Internal DHCP Server and For Global VPN Client.
- In the Relay IP Address (Optional) please put the reserved IP. In our example it is 192.168.100.2.
- Click OK. From now on the GVC clients will be assigned different IPs.
NOTE: The same can be set for an external DHCP server. The same rules for relay IP apply.
Resolution for SonicOS 6.2 and Below
The below resolution is for customers using SonicOS 6.2 and earlier firmware. For firewalls that are generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware.
NOTE: Virtual adapter settings are required.
- Login to an application GUI.
- Navigate to Network | Interfaces.
- Click Add Interface button.
- PIck a zone (such as LAN or a custom one) and select a VLAN tag. Choose a parent interface (LAN interfaces preferred).
- Put an IP address and Subnet mask that you wish to use for the GVC connection.
- Click OK. One does not need to change anything on the Advanced tab.
- Click Accept button.
- Navigate to Network | DHCP Server and make sure that the server is enabled.
- Click Add Dynamic button.
- In Range Start put an IP address that is not the first from the whole range but at least the 3rd one. In this example we used 192.168.100.1 as an interface IP so we have a range from 192.168.100.1 to 192.168.100.254. We need to reserve one IP in front of the DHCP range for a relay IP which we will configure in next steps. So in our case the range start is 192.168.100.3. Range End is up to you. Default Gateway and Subnet Mask should be of course filled according to your settings. In our example it would be Default Gateway: 192.168.100.1 and Subnet Mask: 255.255.255.0.
- Select Iinterface Pre-Populate and choose the VLAN interface from the list.
- Click OK button.
- Navigate to VPN | DHCP over VPN and click Configure(Please make sure it is set to Central Gateway.).
- Select Use Internal DHCP Server and For Global VPN Client.
- In the Relay IP Address (Optional) please put the reserved IP. In our example it is 192.168.100.2.
- Click OK button. From now on the GVC clients will be assigned different IPs.
NOTE: The same can be set for an external DHCP server. The same rules for relay IP apply.
Related Articles
Categories
Was This Article Helpful?
YESNO