SSL VPN allows clients to establish VPN connections from home/remote locations, into the hosted environment.
Prerequisite
Note: if you do not to see 'SSL VPN-Plus' as a menu option in your Edge Gateway, please contact the vGRID support team.
Steps to setuSSL VPN
Log into vCloud Director - Tenant Portal
- Navigate to Networking > Edges menu
- Highlight your Edge Gateway and then click 'Configure Services'
Log into vCloud Director - Flex Portal
- Go to the Administration Tab
- Select the Virtual Datacenters section and open your Virtual Datacenter.
- Select the Edge Gateways Tab which will show you the Edge Gateway for your account.
- Right click the Edge Gateway to bring up the context menu and select Edge Gateway Services....
Go to SSL VPN-Plus > Authentication
Create/edit the local Authentication service, and defining the password policy options that will be used
Go to SSL VPN-Plus > Server Settings
These are the setting for the VPN server
- Toggle the Enable button to ON
- Select the IP address of the Edge gateway which will be used as the VPN connection endpoint - should have (Primary) at the end
- Change the port (if required)
- Click 'Save changes'
Go to SSL VPN-Plus > Private Networks
This is the internal network range of your hosted servers, which clients will be connecting to.
Click the '+' button under SSL VPN-Plus Private Networks
![]()
|
Enter the IP range of the Private network Enter a description (optional)
Click Keep |
Go to SSL VPN-Plus > IP Pools
This is the network range that clients will be assigned when connecting. Avoid common IP ranges to ensure that subnet do not overlap.
Click the '+' button
![]()
|
Enter IP Range Toggle Status to On |
If you wish to use Full Tunnel rather than Split Tunnel
Ensure that you have added the optional Advanced setting in your IP Pool
Go to SSL VPN-Plus > Client Configuration
- Change the Tunneling mode from Split Tunnel to Full Tunnel
- Enter the default gateway
Go to SSL VPN-Plus > Users
This section is where you create user accounts.
Click the '+' button
![]()
|
Enter the user name Enter First name (optional)
Enable / disable options for the
Set your Password requirements.
Press Keep |
Go to SSL VPN-Plus > Installation Packages
This allows you to set the options that will be used by the VPN Client.
Click the '+' button
![]()
|
Enter a profile name -- this will be the name of connection in the VPN Client
Select the options for Windows clients |
Go to SSL VPN-Plus > General Settings
Adjust the settings as required
Go to Firewall tab
Confirm that 'firewall' and 'sslvpn' rules has been added (as pictured below).
And adjust the sslvpn rule to match those settings selected under ‘SSL VPN-Plus > Server Settings’ if they do not match.
Add firewall rule to allow traffic between the IP Pool range & the server network
Add firewall rule to allow traffic between the server network & IP Pool range
If you require further assistance, please contact our Service Desk by emailing support@vgrid.nz