<HTML>
<HEAD>
<TITLE>Navigating Client GUI</TITLE>
</HEAD>
<!-- Background white, links blue (unvisited), navy (visited), red (active) -->
<BODY
BGCOLOR="#FFFFFF"
TEXT="#000000"
LINK="#0000FF"
VLINK="#000080"
ALINK="#FF0000"
>
<A NAME="Top of Page"></A>
<h1>SSL VPN CLIENT HELP 8,3,1,194</h1>
<!-- INDEX BEGIN -->
<UL>
<LI><A HREF="#Status Window">Status Window</A>
<LI><A HREF="#Network Window">Network Window</A>
<LI><A HREF="#Troubleshooting">Troubleshooting</A>
<UL>
<LI><A HREF="#Installation">Installation</A>
<LI><A HREF="#VPN Connection">VPN connection</A>
<LI><A HREF="#IPsec VPN over Array SSL VPN">IPsec VPN over Array SSL VPN</A>
</UL>
</UL>
<!-- INDEX END -->
<HR>
<H1 ALIGN="LEFT"><A NAME="Status Window">Status Window</A></H1>
The status window displays SSL VPN basic connection attributes and their values <br><br>
<p><ALIGN="LEFT"><IMG SRC="status.jpg" ALT=""></p><br>
<STRONG><I>Assigned IP Address</I></STRONG><br>
The IP address assigned by VPN Gateway for SSL VPN Tunnel<br><br>
<STRONG><I>Bytes Sent</I></STRONG><br>
The number of bytes sent through the SSL VPN Tunnel<br><br>
<STRONG><I>Bytes Received</I></STRONG><br>
The number of bytes received through the SSL VPN Tunnel<br><br>
<STRONG><I>Status</I></STRONG><br>
The status dialog box indicates the current status of the SSL VPN Tunnel.
When the connection is established, the dialog box will display the duration of the connection<br><br>
<STRONG><I>Disconnect Button</I></STRONG><br>
Clicking on Disconnect button will terminate your SSL VPN connection <br><br>
<HR>
<A HREF="#Top of Page">Top of Page</A>
<H1 ALIGN="LEFT"><A NAME="Network Window">Network Window</A></H1>
The network window displays SSL VPN advanced connection attributes and a configuration option for IPSEC.<br><br>
<STRONG><I>DNS Servers</I></STRONG><br>
The display contains the list of DNS servers that will be used by the SSL VPN connection in the order.<br><br>
<STRONG><I>WINS Servers</I></STRONG><br>
The display contains the list of WINS servers that will be used by the SSL VPN connection in the order.<br><br>
<STRONG><I>Domain Search List</I></STRONG><br>
The display contains the available search domains that will be used by the SSL VPN connection in the order.<br><br>
<STRONG><I>Accessible Networks and Tunnel Mode:</I></STRONG><br>
The accessible networks text box display contains one or more IP subnets, or zones, to which VPN users will have access. Accessible networks list is compiled based on the tunneling mode of the SSL VPN connection. The SSL VPN connection has two modes, namely split and full tunneling.<br><br>
Full Tunneling<br>
<p><ALIGN="LEFT"><IMG SRC="fullnetwork.gif" ALT=""></p>
If full tunneling is displayed, all traffic will be tunneled except for traffic destined to the Web interface of the virtual site or to the client�s physical network default interface router. Note that with full tunneling the user will not have access to the local network.<br><br>
Split Tunneling<br>
<p><ALIGN="LEFT"><IMG SRC="splitnetwork.gif" ALT=""></p>
If split tunneling is displayed, only traffic destined to configured accessible network zones will be tunneled. All other traffic will continue to be routed normally, and the client will continue to have access to local network resources.<br><br>
<STRONG><I>Enable IPSec VPN over Array SSL VPN</I></STRONG><br>
This configurable check box will allow the user to enable/disable IPSec VPN over Array SSL VPN. Whenever changes are made
to this box, settings will be applied only after restarting the SSL VPN connection. <br><br>
<HR>
<A HREF="#Top of Page">Top of Page</A>
<H1 ALIGN="LEFT"><A NAME="Troubleshooting">Troubleshooting</A></H1><br>
<H3><A NAME="Installation">Basic Installation and Configuration</A></H3><br>
<UL>
<LI>Error: Network adapter fails to install<br>
The user does not have permission to install Network Cards on the client machine. Depending on the hardware configuration,
users may not have permission to install network cards even if they are local administrators.<br><br>
<LI>Error: "Network" Tab for VPN will not be displayed if the user enters wrong credentials twice when going through an ISA
forward proxy. This happens with IE 5.0 browsers only.<br>
Reason: IE 5.0 and Active X dependency, this is a known limitation with microsoft. We recommend upgrading to IE 6.0<br><br>
<LI>Error: It takes couple of seconds to display the changes for DNS suffix search list on windows command line when using
ipconfig/all command.<br>
Reason: It is an inherent windows limitation. You will see the changes if you wait 10 to 12 seconds.<br><br>
<LI>Warning: When SSL VPN is installed in full tunneling mode all the static routes on the client machine are overwritten so that the entire traffic goes through the SSL VPN tunnel. Some Internet Service Providers, espeically dial-up service providers, require static host routes for their beacon or keep alive packets. When Array SSL VPN
is configured to use full tunneling mode, these static host routes get overwritten. This will cause the Internet connection being disconnected. <br>
Solution: We suggest users using these kind of ISP's use split tunneling mode. Please contact your system administrator to enable split tunneling mode.<br><br>
<LI>Warning: If client computer is using DHCP, and Array SSL VPN is using full tunneling mode or the DHCP server's IP happens to belong to one of the accessible networks through the VPN, DHCP renew will fail. If the client computer loses its actual physical IP address for this reason, the user can simply disconnect SSL VPN and then run "ipconfig /renew"(from DOS command line window) to get the IP back, and then reconnect to Array SSL VPN gateway.<br>
</UL>
<H3><A NAME="VPN Connection">VPN connection</A></H3>
<UL>
<LI>Error: Failed to connect to gateway.
VPN connection failed.No response from server.<br>
Reason: VPN server did not respond to connection request<br><br>
<LI>Error: Failed to connect to gateway.
Invalid response from server<br>
Reason: VPN server provided invalid response<br><br>
<LI>Error: Failed to connect to gateway.
Failed to negotiate policy<br>
Reason: Invalid configuration packet was received from VPN server<br><br>
<LI>Error: Failed to connect to gateway.
Server closed the connection.<br>
Reason: VPN connection was terminated from the server side <br><br>
<LI>Error: Failed to connect to gateway.
Error sending data to server<br>
Reason: VPN client failed to send data to VPN server - usually due to a closed connection <br><br>
<LI>Error: Failed to connect to gateway.
Error receiving data from server.<br>
Reason: VPN client failed to receive data from VPN server - usually due to a closed connection.<br><br>
<LI>Error: Failed to connect to gateway.
Failed to enable the VPN adapter.<br>
Reason: VPN adapter may be corrupted. Restart your computer and try connecting again. If problem persists, reinstall VPN client.<br><br>
<LI>Error: Failed to connect to gateway.
Invalid Session ID parameter.<br>
Reason: Current SSL session has timed out. Relogin at Array Web Portal page and try connecting to the VPN server again.<br><br>
<LI>Error: Failed to connect. invalid session ID, check your server configuration. VPN client failed to connect.<br>
Reason: Your session is expired. VPN gateway will reject requests when a session is expired.
Please relog into the VPN gateway and reconnect to fix this problem.<br><br>
<LI>Error: Failed to connect to Array SSL VPN server. You need to logout from SP and login again to continute.
Reason: Your session is either expired or you have reached session lifetime limit or your session is killed by administrator. Please relogin again to connect to VPN gateway.<br><br>
<STRONG>Suggested Action</STRONG>: In general for the above errors you need to log out from VPN gateway, close all browser
评论0
最新资源