Field
Description
XAUTH Profile
Select a profile created in VPN->IPSec->XAUTH Profiles if you
wish to use this IPSec peer XAuth for authentication.
If XAuth is used together with IKE Config Mode, the transac-
tions for XAuth are carried out before the transactions for IKE
Config Mode.
Number of Admitted
Connections
Choose how many users can connect using this peer profile.
Possible values:
•
' -$
(default value): Only one peer can be connected
with the data defined in this profile.
•
:. -$-
: Several peers can be connected with the
data defined in this profile. The peer entry is duplicated for
each connection request with the data defined in this profile.
The dynamic peer configuration on the gateway must not spe-
cify a peer ID or a peer IP address. Clients connecting to the
gateway, however, must have a peer ID specified in the client
peer configuration, since the ID is still used to differentiate the
tunnels created via the dynamic peer.
The resulting gateway peer would match all incoming tunnel
requests. It is, therefore, essential to put it at the end of the
IPSec peer list on the gateway. Otherwise all peers that follow
the dynamic peer in the peer list would be inactive.
Start Mode
Select how the peer is to be switched to the active state.
Possible values:
•
' !
(default value): The peer is switched to the active
state by a trigger.
•
><- :.
: The peer is always active.
Fields in the menu Advanced IP Options
Field
Description
Public Interface
Specify the public (or WAN) interface that this peer is to use to
connect to its VPN partner. If you select
7 - ;< :
, the decision as to via which interface the data traffic is
routed is made based on the current routing table. If you select
an interface, the interface is used taking into consideration the
23 VPN
bintec elmeg GmbH
474
elmeg hybird 120 / hybird 130