Prev | Current Page 353 | Next

Jesse Varsalone and Jan Kanclirz Jr.

"Microsoft Forefront Security Administration Guide"

In addition, you will need to determine how client IP confl icts
are handled. The choices are Fail, Prompt, and Skip. These options determine if a client
is open on a Network Connector SSL VPN connection even if they are presently on one
of the additional networks. The IP Pool does not need to be included, as that is done
automatically. Take special care to include any addresses that your users may need to
be able to contact, including infrastructure servers such as DCS, WINS, and DNS, in
addition to any application server that they may need to access such as fi le, print, e-mail,
and the location of their desktops for Remote Desktop Protocol (RDP) access. You
should also take care to not be overly broad when you defi ne your additional networks,
Figure 10.4 Access Control
Configuring Virtual Private Network Traffic ??? Chapter 10 369
Advanced Tab
The Advanced tab allows you to set three groups of settings (see Figure 10.6). The fi rst
is the Network Connector Listener protocol and port. The default is Transmission
Control Protocol (TCP) and Port 6003. The second group of settings is related to the
log settings including the log level and location. The log levels range from 1 (minimal)
to 5 (verbose). Be careful when increasing the log level as the logs can be extremely
large when in verbose mode and affect system performance. The third group of settings
allows you to modify the number of threads per central processing unit (CPU), buffer
levels, and timeouts.


Pages:
341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365