Configuring SSL VPN Bookmarks

When user bookmarks are defined, the user sees the defined bookmarks on the SSL VPN Virtual Office home page. Individual user members are not able to delete or modify bookmarks your create.

To configure SSL VPN bookmarks:
1
Navigate to SSL VPN > Virtual Office.
2
Click Add Bookmark. The Add Portal Bookmark dialog displays.

3
4
Enter the fully qualified domain name (FQDN) or the IPv4 address of a host machine on the LAN in the Name or IP Address field. In some environments you can enter the host name only, such as when creating a VNC bookmark in a Windows local network.

Some services can run on non-standard ports, and some expect a path when connecting. Depending on the choice in the Service field, format the Name or IP Address field like one of the examples shown in Table 91.

 

Table 91. Bookmark name or IP Address formats by service type

Service Type

Format

Example for Name or IP Address Field

RDP - ActiveX

RDP - Java

IP Address

IP:Port (non-standard)

FQDN

Host name

10.20.30.4

10.20.30.4:6818

JBJONES-PC.sv.us.sonicwall.com

JBJONES-PC

VNC

IP Address

IP:Port (mapped to session)

FQDN

Host name

10.20.30.4

10.20.30.4:5901 (mapped to session 1)

JBJONES-PC.sv.us.sonicwall.com

JBJONES-PC

NOTE: Do not use 10.20.30.4:1.

TIP: For a bookmark to a Linux server, see the Tip below this table.

Telnet

IP Address

IP:Port (non-standard)

FQDN

Host name

10.20.30.4

10.20.30.4:6818

JBJONES-PC.sv.us.sonicwall.com

JBJONES-PC

SSHv1

SSHv2

IP Address

IP:Port (non-standard)

FQDN

Host name

10.20.30.4

10.20.30.4:6818

JBJONES-PC.sv.us.sonicwall.com

JBJONES-PC

TIP: When creating a Virtual Network Computing (VNC) bookmark to a Linux server, you must specify the port number and server number in addition to the Linux server IP in the Name or IP Address field in the form of ipaddress:port:server. For example, if the Linux server IP address is 192.168.2.2, the port number is 5901, and the server number is 1, the value for the Name or IP Address field is 192.168.2.2:5901:1.
5
For the specific service you select from the Service drop-down menu, available options may change. Complete the information for the service you selected from the Service drop-down menu:

Terminal Services (RDP - ActiveX) or Terminal Services (RDP - Java)

NOTE: If you select Terminal Services (RDP - ActiveX) while using a browser other than Internet Explorer, the selection is switched automatically to Terminal Services (RDP - Java). A popup message notifies you of the switch.
To configure terminal services:
1
In the Screen Size drop-down menu, select the default terminal services screen size to be used when users execute this bookmark:
1024x768 (default)

Because different computers support different screen sizes, when you use a remote desktop application, you should select the size of the screen on the computer from which you are running a remote desktop session.

2
In the Colors drop-down menu, select the default color depth for the terminal service screen when users execute this bookmark:
3
4
In the Start in the following folder (optional) field, optionally enter the local folder in which to execute application commands.
5
Expand Show advance Windows options. More options display; which options display depend on whether you selected Terminal Services (RDP5 - Active X) or Terminal Services (RDP5 - Java) from the Service drop-down menu.
6
7
For RDP - ActiveX on Windows clients, to redirect any of the following devices or features on the local network for use in this bookmark session, select the appropriate checkboxes:

8
9
For RDP - Java on Windows clients or on Mac clients running Mac OS X 10.5 or above with RDC installed:

a
Redirect clipboard (selected by default)
b
Display connection bar (selected by default)
Auto reconnection (selected by default)
Themes (selected by default)
Bitmap caching (selected by default)
c
10
Select the Login as console/admin session checkbox to allow login as console or admin.
11
For RDP - ActiveX on Windows clients:
a
Optionally select Enable plugin DLLs. The PluginDLLS field displays.

12

Ensure that any necessary DLLs are located on the individual client systems in %SYSTEMROOT% (for example: C:\Windows\system32).

13
To forward credentials from the current SSL VPN session for login to the RDP server, select the Automatically log in checkbox. This option is selected by default.
14
Use custom credentials to enter a custom username, password, and domain for this bookmark. When you select radio button, more options display.

You can configure custom Single Sign On (SSO) credentials for each user, group or globally in RDP bookmarks. This feature is used to access resources that need a domain prefix for SSO authentication. Users can log into SonicWALL SSL VPN as username and click a customized bookmark to access a server with domain\username. Either straight textual parameters or variables may be used for login credentials.

Enter the appropriate username and password, or use dynamic variables:

 

Text Usage

Variable

Example Usage

Login Name

%USERNAME%

US\%USERNAME%

Domain Name

%USERDOMAIN%

%USERDOMAIN\%USERNAME%

Group Name

%USERGROUP%

%USERGROUP%\%USERNAME%

15
For RDP - Java on Windows clients or on Mac clients running Mac OS X 10.5 or above with RDC installed, select whether to display bookmarks to Mobile Connect clients by selecting the Display Bookmark to Mobile Connect clients checkbox. This option is not selected by default.
16

Virtual Network Computing (VNC)

If you chose Virtual Network Computing (VNC) from the Service drop-down menu, the options change.

To configure a bookmark for VNC:
1
Raw (default)
2
Select a compression level, 0 (default) – 9, from the Compression Level drop-down menu.
3
Select a quality level, 0 (default) – 9, JPEG OFF, from the JPEG Image Quality drop-down menu.
4
Select whether to update cursor shape from the Cursor Shape Updates drop-down menu:
Enable (default)
5
To use CopyRect, select the Use CopyRect checkbox. This option is not selected by default.
6
To restrict the color level, select the Restricted Colors (256 Colors) checkbox. This option is not selected by default.
7
To reverse the mouse buttons, select the Reverse Mouse Buttons 2 and 3 checkbox. This option is not selected by default.
8
To restrict the user to view only, select the View Only checkbox. This option is not selected by default.
9
To enable users to share their desktop, select the Share Desktop checkbox. This option is not selected by default.
10
To display the bookmark to Mobile Connect users, select the Display Bookmark to Mobile Connect clients checkbox. This option is not selected by default.
11

Telnet

If you chose Telnet from the Service drop-down menu, the options change.

To configure a bookmark for Telnet:
1
To display the bookmark to Mobile Connect users, select the Display Bookmark to Mobile Connect clients checkbox. This option is not selected by default.
2

Secure Shell version 1 (SSHv1)

If you chose Secure Shell version 1 (SSHv1) from the Service drop-down menu, there are no further options. Click OK.

Secure Shell version 2 (SSHv2)

If you chose Secure Shell version 2 (SSHv2) from the Service drop-down menu, the options change.

To configure a bookmark for SSHv2:
1
Optionally, select the Automatically accept host key checkbox. This checkbox is not selected by default.
2
If using an SSHv2 server without authentication, such as a SonicWALL firewall, you can select the Bypass username checkbox. This checkbox is not selected by default.
3
To display the bookmark to Mobile Connect users, select the Display Bookmark to Mobile Connect clients checkbox. This option is not selected by default.
4