SSL Application

Configure an SSL application object to specify a service and a corresponding IP address of the server on the local network. You can apply one or more SSL application objects in the VPN > SSL VPN screen for a user account/user group.

Application Types

The following lists the types of SSL applications you can configure on the ZyWALL.

Remote User Screen Links

Available SSL application names are displayed as links in remote user screens. Depending on the application type, remote users can simply click the links or follow the steps in the pop-up dialog box to access.

SSL Application Configuration

The main SSL Application screen displays a list of the configured SSL application objects.

Object > SSL Application

label
Description
#
This field displays the index number.
Name
This field displays the name of the object.
Address
This field displays the IP address/URL of the application server or the location of a file share.
Type
This field display the application type.
Add icon
This column provides icons to add, edit, and remove SSL application objects.
To add an object, click the Add icon at the top of the column.
To edit an object, click the Edit icon next to the object.
To delete an object, click the Remove icon next to the object.

Creating/Editing an SSL Application

To create or edit an SSL application object, click the Add or Edit button in the SSL Application screen. There are two types of SSL applications: web-based and file sharing.

Web-based Application

A web-based application allows remote users to access an application via standard web browsers.

To configure a web-based application, click the Add or Edit button in the SSL Application screen and select Web Application in the Type field.

Object > SSL Application > Add/Edit: Web Application

label
Description
Object
 
Type
Select Web Application from the drop-down list box.
Web Application
 
Name
Enter a descriptive name to identify this object. You can enter up to 31 characters ("0-9", "a-z", "A-Z", "-" and "_"). No spaces are allowed.

Note: If there is any space in the name, a warning screen displays when you click Apply. The ZyWALL will also automatically delete the space(s).

URL
Enter the fully qualified domain name (FQDN) or IP address of the application server.

Note: You must enter the "http://" or "https://" prefix.

Remote users are restricted to access only files in this directory. For example, if you enter "\remote\" in this field, emote users can only access files in the "remote" directory.
If a link contains a file that is not within this domain, then remote users cannot access it.
Preview
Click Preview to access the URL you specified in a new IE web browser.
Entry Point
This field is optional. You only need to configure this field if you need to specify the name of the directory or file on the local server as the home page or home directory on the user screen.
Server Type
Specify the type of service for this SSL application.
Select Web Server to allow access to the specified web site hosted on the local network.
Select OWA (Outlook Web Access) to allow users to access e-mails, contacts, calenders via Microsoft Outlook-like interface using supported web browsers. The ZyWALL supports one OWA object.
Web Page Encryption
Select this option to prevent users from saving the web content.
Ok
Click Ok to save the changes and return to the main SSL Application Configuration screen.
Cancel
Click Cancel to discard the changes and return to the main SSL Application Configuration screen.

Example: Specifying a Web Site for Access

This example shows you how to create a web-based application for an internal web site. The address of the web site is http://info with web page encryption.

Configuring File Sharing

You can specify the name of a folder on a file server (Linux or Windows) which remote users can access. Remote users can access files using a standard web browser and files are displayed as links on the screen.

To configure a file share, click the Add or Edit button in the SSL Application screen and select File Sharing in the Type field.

Object > SSL Application > Add/Edit: Web Application

label
Description
Object
 
Type
Select File Sharing to create a file share application for VPN SSL.
File Sharing
 
Name
Enter a descriptive name to identify this object. You can enter up to 31 characters ("0-9", "a-z", "A-Z", "-" and "_").
Shared Path
Specify the IP address, domain name or NetBIOS name (computer name) of the file server and the name of the share to which you want to allow user access. Enter the path in one of the following formats.
"\\<IP address>\<share name>"
"\\<domain name>\<share name>"
"\\<computer name>\<share name>"
For example, if you enter "\\my-server\Tmp", this allows remote users to access all files and/or folders in the "\Tmp" share on the "my-server" computer.
Preview
Click Preview to display the file share in a new web browser.
Ok
Click Ok to save the changes and return to the main SSL Application Configuration screen.
Cancel
Click Cancel to discard the changes and return to the main SSL Application Configuration screen.

Note: You must then configure the shared folder on the file server for remote access. Refer to the document that comes with your file server.