You can configure VPN connections to use a dynamically assigned WAN IP address on the Barracuda NextGen Firewall X-Series. In the VPN settings, enable use of dynamic IP addresses. Then configure an access rule that redirects VPN traffic to the VPN server.
Step 1. Configure VPN Access via a Dynamic WAN IP Address
To allow VPN access via a dynamic WAN IP address:
- On the VPN > VPN Settings page, in the Global Server Settings section, verify that Use Dynamic IPs is set to Yes.
- If you want to make your VPN available through a DNS hostname, you can register the hostname with http://dyn.com/dns . For more information, see How to Configure a DHCP Connection.
Step 2. Create an Access Rule to Redirect VPN Traffic to the VPN Server
Create a new access rule that redirects the VPN traffic to the VPN server to establish the tunnel:
Go to the FIREWALL > Firewall Rules page.
- Click Add Access Rule.
In the Add Access Rule windows, configure a Redirect to Service firewall rule that redirects incoming VPN connections on the dynamic interface to the VPN server listening on the local IP address. For the Destination, select the network object corresponding to your Internet connection type (DHCP, 3G, or DSL).
At the top of the Add Access Rule window, click Add.
- Move the access rule above the BLOCKALL rule. For more information, see Firewall Rules Order.
- Click Save.