Prev | Current Page 348 | Next

Jesse Varsalone and Jan Kanclirz Jr.

"Microsoft Forefront Security Administration Guide"

Figure 10.1 shows the network path for a client connected
using the IAG 2007 Network Connector SSL VPN.
Configuring Virtual Private Network Traffic ??? Chapter 10 363
Figure 10.1 Connecting a Client via the IAG 2007 Network Connector SSL VPN
Internet
Client
Intelligent
Application
Gateway Server
Corporate Network
File
Server
Exchange
Server
Internal Network Traffic Internal Network Traffic
Encrypted SSL VPN Traffic
Internal Network Traffic
Internal Network Traffic
Domain
Controller
SharePoint
Server
364 Chapter 10 ??? Confi guring Virtual Private Network Traffi c
Setting Up the Network Connection Server
The IAG Network Connector SSL VPN would be used for clients that you want to
have full network-level access to the corporate network from remote clients. Similar
to how LT2P and PPTP VPNs worked in the past but it will allow you to connect
from network locations that were not previously possible. Some of these environments
include connecting from a client that is behind a router using NAT or in environments
with highly restrictive fi rewalls. The Network Connector also allows you to specify
networking parameters including Domain Name System (DNS), WINS, Gateway, and
Domain Name for clients after they connect.
Another benefi t of the IAG Network Connector SSL VPN is that it supports IAG
Access Policies prior to connection. This allows you to confi rm compliance with important
security measures, such as Windows updates, antivirus, or other software applications
prior to the client being allowed to connect to the corporate network.


Pages:
336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360