16.2. Using VPN connections

VPN connections can be configured using the VPN ZMC component. Before starting to configure VPN connections, add this component to the host (see Procedure 3.2.1.3.1, Adding new configuration components to host for details).

Note

If only IPSec traffic is required to be forwarded without terminating the tunnel on Zorp, see Procedure 16.3.4, Forwarding IPSec traffic on the packet level.

Using VPN connections

Figure 16.3. Using VPN connections

Use the New, Delete, and Edit buttons to create, remove, or rename VPN connections. Clicking on Control displays a drop-down menu to start, stop, or restart the selected connections.

The VPN ZMC component automatically creates the required ipsec and tun interfaces for the configured VPN tunnels. Use these interfaces to define Zorp services that can be accessed through the VPN tunnel. Firewall rules can use these interfaces like a regular, physical network interface. The general procedure of using VPNs is as follows: