Establishing a Virtual Private Network (VPN) connection between Sheriff CSM components encrypts all network traffic that passes through a secure VPN tunnel. The Sheriff VPN environment consists of a single VPN server that connects to at least one, but usually multiple, VPN clients. In general, you configure a Sheriff CSM Server (Standard or Enterprise) or a Sheriff CSM All-in-One to act as the VPN server.
Important:
A Sheriff CSM system cannot serve both as a VPN server and a VPN client at the same time.
You must have already set up your Sheriff CSM Server, Sheriff CSM Sensor (Deputy), or Sheriff CSM Logger, with one exception. If you intend for your Sensor to act as the VPN client, you only complete setup up to, but not including, the tasks in Configure the Sheriff CSM Sensor after Deployment, as applicable.
Before completing that configuration task, you must have first created a VPN tunnel between the VPN server and VPN client. This gives you the VPN IP address required to configure the Sensor in that role.