Chapter 16 SSL VPN : Setup examples : Multiple user groups with different access permissions : Creating the security policies : Configuring authentication rules
  
Configuring authentication rules
1. Go to VPN > SSL > Settings and select Create New under Authentication/Portal Mapping.
2. Add an authentication rule for the first remote group:
Users/Groups
Group1
Portal
Portal1
3. Select OK and Apply.
4. Select Create New and add an authentication rule for the second remote group:
Users/Groups
Group2
Portal
Portal2
5. Select OK and Apply.
To create the tunnel-mode security policies - web-based manager:
1. Go to Policy & Objects > Policy > IPv4 and select Create New.
2. Enter the following information, and select OK:
Incoming Interface
ssl.root (sslvpn tunnel interface)
Source Address
Tunnel_group1
Outgoing Interface
port2
Destination Address
Subnet_1
Action
ACCEPT
Enable NAT
Enable
3. Select Create New.
4. Enter the following information, and select OK:
Incoming Interface
ssl.root (sslvpn tunnel interface)
Source Address
Tunnel_group2
Outgoing Interface
port3
Destination Address
Subnet_2
Action
ACCEPT
Enable NAT
Enable