For client-based secure remote access, SonicWALL offers both SSL VPN and IPSec VPN connectivity options.

Client Name Type Brief Description
SonicWALL NetExtender SSL VPN Modern thin client connectivity

SonicWALL Global VPN Client

IPsec VPN

Enhanced traditional IPsec client-based VPN experience

SonicWALL NetExtender

The SonicWALL NetExtender is a SSL VPN client that provides network level access to resources, services and applications on the corporate network.
The connectivity experience is virtually identical to that of a traditional IPSec VPN client, but NetExtender does not require any manual client installation.

The client is transparently downloaded from the SSL VPN portal and installed on the users' machines, either with ActiveX controls for Internet Explorer users, with the XPCOM plugin for Firefox users or with Java controls on Linux or Mac OS X systems for supported browsers. The NetExtender client will create a connection profile recording the SSL VPN gateway address, the Domain name and optionally the username and password.
NetExtender has broad platform(including mobile devices) and operating systems support(Windows, Linux or Mac OS X).

SonicWALL Global VPN Client

The SonicWALL Global VPN Client is an IPsec-based VPN client that provides users with an enhanced traditional client-based VPN experience.

It includes easy-to-follow wizards to help users install and configure a VPN connection. The users enter the domain name or IP address of the SonicWALL VPN gateway and the Global VPN Client configuration policy is automatically downloaded.

The connection is robust as the VPN session reliability feature allows the Global VPN Client to support redundant SonicWALL VPN gateways to ensure mission-critical network access in the event the primary gateway fails.

SonicWALL VPN Clients Features

Feature

SonicWALL NetExtender

SonicWALL Global VPN Client

VPN Type

SSL VPN client-based

IPsec VPN client-based

VPN Gateway Type

VPN Firewall 1, Dedicated 2

VPN Firewall 1

Access Type

Network level

Network level

Connectivity

Anywhere

IPsec must be allowed

NAT Traversal

Yes

Yes

Mobile Device Support

Yes

No

Broad OS support

Yes(Windows, Linux, Mac OS X)

No(Windows only)

Easy-to-use

Yes (+)

Yes

Easy-to-manage

Yes (+)

Yes

Installation

On-the-fly

Manual

Auto-Launch

Yes

Yes

Client Policy Provisioning

Yes

Yes

Two-Factor Authentication

Yes

Yes

Client Certificate

Yes

Yes

Client routes

Yes

Yes

Full tunnel mode

Yes

Yes

Clean VPN

Yes 3

Yes 3

Endpoint Type

Managed and possibly unmanaged

Rather managed

1: VPN Firewall: supported TZ Series, NSA or E-Class NSA Series.
2: Dedicated: SRA series.
3: Clean VPN: on the VPN Firewall appliances the Antivirus, IPS, content filtering, etc. options must be active; the dedicated SSL VPN appliance must be deployed along a SonicWALL UTM or NGFW.