uOS 1.38-Multiple SSL VPN Access Profiles for Flexible Connectivity

Options
Zyxel_Lynn
Zyxel_Lynn Posts: 183 image  Zyxel Employee
5 Answers First Comment Friend Collector First Anniversary
edited May 21 in Other Topics

Granular Remote Access: Multiple SSL VPN profile user list 

H series firewalls now support up to 32 user objects within a single SSL VPN profile user list, allowing administrators to apply different security and connectivity settings to specific user groups.

Regarding SSL VPN client profiles, the maximum number of profiles that can be created depends on the specific H series model. Each client profile can contain up to 32 user entries in its client list.


Customizing User Access

Previously, all VPN users shared a single global configuration. With the new update, administrators can create distinct profiles for different departments (e.g., MIS vs. Sales). 


Each profile can be configured with its own Client IP Pool, Tunnel Type (Full or Split), and DNS settings. For any given user, the settings defined in their specific Client Profile take priority over Global settings, ensuring the most precise rules are applied to their session.



Implementation Logic

The IP pools assigned to specific profiles must reside within the global VPN subnet range. Administrators can verify profile assignment in real-time using the VPN monitor, which displays the specific profile name, assigned IP, and user account for each active connection.