In order to facilitate VPN communications, NetMAX VPN Suite automatically
creates a few necessary firewall rules upon receiving a connection request.
When a connection is initiated, the NetMAX VPN server checks to see if
the connection is from a known client, or if this will be a Road Warrior
connection.
The server then checks in the appropriate configuration files to determine
if NAT should be enabled for the type of connection it is receiving.
If NAT is enabled for the connection being requested, the server
automatically creates the appropriate masquerading rule.
If NAT is not enabled for the connection being requested, the server
automatically creates the appropriate forward / accept rule for
the connection.
These rules are created because the default policy of the firewall is
to DENY communications. This policy ensures maximum security.
Consequently, specific exceptions need to be made to accomodate VPN
communications. address-suppressed |