Secure Mobile Access 12.4 Deployment Guide

Specifying Access Methods for Employees

For each community of users, you can configure which access methods are available: Smart Tunnel Access (IP Protocol), Web-based proxy access (TCP Protocol), or Web access (HTTP).

For the Employees community, it’s likely that you will want to grant open access so that a user can establish remote access using whatever method is appropriate for his or her device. By contrast, the Partners community, in this example, will have only Web access.

The tunnel clients give users an “in-office” experience, with full VPN access to their applications. In the following steps you’ll grant Employees the ability to use OnDemand Tunnel, and set up an IP address pool for the client.

To specify open, tunnel access for employees

  1. Navigate to the Access Methods tab on the User Access > Realms page.

  2. In the Tunnel (IP Protocol) section on the Configure Community page, select the Network tunnel client (OnDemand) checkbox. If you don’t have an IP address pool configured yet, a warning will be displayed.

  3. Click Configure. The Network Tunnel Client Settings page is displayed.

  4. In the IP Address Pools section, click Edit next to Address pools.

  5. On the Address Pools page, click the + (New) icon.

  6. In the Name field, enter a label for the IP address pool that will be used to allocate addresses to the network tunnel clients.

  7. Select an address pool type.

    There are several ways to specify an address pool. If you’re not sure which one to choose, select Translated address pool (Source NAT) so that the appliance will assign non-routable IP addresses to clients and use Source NAT to translate them to a single address. The drawback is that applications that require reverse connections, such as VoIP or active-mode FTP, may not function properly.

  8. Click Save. The address pool appears in the Address Pools list.

  9. Select the checkbox next to the address pool you just configured.

  10. Click Save.

  11. Click OK. The Access Methods tab on Configure Community page should display.

  12. Click Next to define the zone of trust for employees. Go to Creating Zones of Trust.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden