Adding DNS and WINS Servers

113

7.3.3.1 Group configuration

You can also add tunnel groups. Selecting the Add button sends you through a series of configuration screens. The first screen, shown in Figure 7-3 , allows you to select the type of tunnel you wish to configure: incoming, outgoing, or both. The Extranet server acts as a tunnel server andor a tunnel client. In this case, we are selecting an incoming tunnel. After clicking Next, you are asked to provide a password for this tunnel group. The connecting clients require this password, as well as the key file that is subsequently generated. Figure 7-3. Adding a tunnel group first screen The next screen asks for the Tunnel Name and Description. The Tunnel Name is required, and is likewise needed by the connecting clients. Also, from this screen, you select whether the dynamic IP range you configured for your tunnels is to be dynamically or statically assigned. The client connecting to the group can have either a virtual IP address assigned to it randomly or a fixed IP address every time it connects. Clicking Next sends you to the Dynamic IP address screen. This allows you to choose which range to use for this tunnel group. If you have only one dynamic range, it will be selected automatically. Next is the Specify Routes to Internal Network screen. Here you select which routing group is allowed to the tunnel group. You can select either the Default Route if youve defined one or a Specific Route. Selecting Specific Route will allow you to choose another routing group from your routing tables. The last screen is the Server Definition window. The hostname and port number are configurable as needed. By default, the name of the host where the server software resides is automatically entered into the hostname field. Also by default, the port number is 3265. You have to enter the interceding firewall IP addresses, if applicable. The firewalls should be specified from the client end to the server end. Thus, the First Firewall field is the IP address of the firewall that the client first encounters when attempting to reach the tunnel server. The Second Firewall field is the firewall on the local network. By default, the port number for the