User Guide
SonicWALL VPN Page 115
SonicWALL VPN Client for Remote Access and Management
This section covers the configuration of SonicWALL VPN and the installation and
configuration of the VPN client software. You can create a VPN client Security Association
by using Manual Key Configuration, Group Configuration or Advanced
Configuration. Group Configuration, Manual Key Configuration, and IKE
Configuration (SonicWALL to SonicWALL) are described in this chapter. Advanced
Configuration is available at the SonicWALL Web site. Before choosing your VPN client
configuration, evaluate the differences between the three methods.
When you register the SonicWALL PRO 200, the SonicWALL PRO 300, or the SonicWALL
VPN Upgrade at <http://www.mysonicwall.com>, you receive a single VPN client for
Windows and a VPN Client serial number. Using the VPN client software, you can establish
a secure VPN tunnel to remotely manage the SonicWALL. Contact your SonicWALL reseller
for information about purchasing additional VPN client licenses for remote access.
Group Configuration uses IKE (Internet Key Exchange) and requires fewer settings on
the VPN client, enabling a quicker setup. Simple configuration allows multiple clients to
connect to a single Security Association (SA), creating a group VPN tunnel. The SonicWALL
only supports one Group Configuration SA. You can use the Group VPN SA for your
single VPN client.
Manual Key Configuration requires matching encryption and authentication keys.
Because Manual Key Configuration supports multiple SAs, it enables individual control
over remote users.
Simple Configuration Using Pre-shared Secret is a VPN client configuration that is
appropriate only for firmware versions 5.1.1 or below.
Advanced Configuration requires a complex setup and is therefore not recommended
for most SonicWALL administrators. Advanced Configuration instructions are available
on the Web at the following address: <http://www.sonicwall.com/products/
documentation/VPN_documentation.html>.
integrated_manual.book Page 115 Friday, October 12, 2001 2:56 PM










