Preface
This guide provides the information you need to work with your Forcepoint product.
Open the Online Help
The SMCaaS Application provides context-sensitive online help.
Introduction to SMC as a Service
The SMC as a Service provides centralized access for configuring, managing, logging, and monitoring NGFWs that secure network connectivity and control business operations.
Forcepoint SMCaaS
The SMCaaS Application is a cloud-based management interface that simplifies and secures distributed network environments.
Features and Benefits
The SMCaaS solution provides a comprehensive cloud-based management solution for secure VPNs, offering a range of benefits that simplify network management, enhance security, and improve efficiency.
Licensing Components
Licenses provide your system with a proof of purchase. The SMCaaS Application automatically handles licenses in the background.
Configuring routing and anti-spoofing
Routing defines through which next hop router the Engine forwards traffic from a source address to a destination address. Anti-spoofing defines which addresses are considered valid source addresses for the networks connected to each interface.
Outbound traffic management
You can use Multi-Link to distribute outbound traffic between multiple network connections and to provide high availability and load balancing for outbound traffic.
Inbound traffic management
Inbound traffic management ensures that services remain available even when one or more servers or NetLinks fail, and balances the load of incoming traffic more efficiently between a group of servers. Inbound traffic management is not supported on layer 2 physical interfaces on Engines.
Dynamic link selection
When you use Multi-Link for outbound traffic management or Multi-Link VPNs, SMCaaS can dynamically select the NetLink or VPN link that best matches the quality requirements of traffic.
Advanced routing topics
Overview
Policies are key elements that contain rules for allowing or blocking network traffic and inspecting the content of traffic.
Creating and managing policy elements
Policy elements are containers for the rules that determine how Engines, Master Engines, and Virtual Engines examine traffic. The policy elements for the Engines include Template Policies, Policies, and Sub-Policies.
Rule Types within Policies
Policy Supporting Elements
Inspection & Content Filtering Policies
Access Control & Authentication Policies
Policy Troubleshooting & Maintenance
Monitoring SMCaaS Application elements
You can monitor Engines and view system summaries in the SMCaaS Application.
Application Health Monitoring
The Application Health Monitoring dashboard lets administrators monitor network and application layers connection quality.
Viewing and Exporting Logged Data
You can view logs through the log browsing view. You can view data from all types of Engines, and from third-party elements that are configured to send data to the SMCaaS Application.
Reports
Reports are summaries of logs and statistics that allow you to combine large amounts of data into an easily viewable form.
Filtering Data
Filters allow you to select data based on values that it contains. Most frequently, you use filters when viewing logs, but filters can also be used for other tasks, such as exporting logs and selecting data for reports.
VPN types & architecture
A VPN extends a secured private network over public networks by encrypting connections so that they can be transported over insecure links without compromising confidential data.
VPN configuration
VPN authentication & certificates
A digital certificate is a proof of identity. SMCaaS supports using certificates for authenticating gateways and the Forcepoint VPN Client.
Application Access Portal
Mobile VPN & VPN client
VPN & access rules
Reconfiguring existing VPNs
You can reconfigure and tune existing VPNs.