(Answer) (Category) NetMAXFAQ : (Category) NetMAX VPN Server Suite (Virtual Private Networking) :
Why is the server creating firewall rules by itself?
Applies to: NetMAX VPN Server Suite version 3.1 - 4.0x
address-suppressed
In order to facilitate VPN communications, NetMAX VPN Suite automatically
creates a few necessary firewall rules upon receiving a connection request.

When a connection is initiated, the NetMAX VPN server checks to see if
the connection is from a known client, or if this will be a Road Warrior
connection.

The server then checks in the appropriate configuration files to determine
if NAT should be enabled for the type of connection it is receiving.

If NAT is enabled for the connection being requested, the server
automatically creates the appropriate masquerading rule.

If NAT is not enabled for the connection being requested, the server
automatically creates the appropriate forward / accept rule for
the connection.

These rules are created because the default policy of the firewall is
to DENY communications. This policy ensures maximum security.

Consequently, specific exceptions need to be made to accomodate VPN
communications.
address-suppressed
Previous: (Answer) Where are the VPN-specific configuration files or prototypes?
Next: (Answer) What Common console messages are related to VPN?
This document is: http://www.netmax.org/cgi-bin/fom.cgi?file=366
[Search] [Appearance]
This is a Faq-O-Matic 2.721.
This FAQ administered by ...Cybernet Systems Corp.