Page 138 SONICWALL VPN
•
Authenticate (AH SHA-1)
uses SHA-1 instead of MD5.
•
Authenticate (ESP MD5)
does not provide data confidentiality (no data encryp-
tion), but it uses MD5 for authentication.
•
Authenticate (ESP SHA-1)
similar to MD5 but uses SHA-1 for authentication.
7. Enter a alphanumeric "secret" in the
Shared Secret
field. The
Shared Secret
must match the corresponding field in the remote SonicWALL. This field may range
from 4 to 128 characters in length and is case sensitive.
8. Click
Add New Network...
to define the destination network addresses. Clicking
Add New Network...
updates the VPN configuration and opens the
VPN Desti-
nation Network
window.
9. Enter the IP address of the remote network in the
Network
field. This address is
a private address if the remote LAN has enabled NAT.
10. Enter the subnet mask of the remote network in the
Subnet mask
field.
11. Click
Advanced Settings.
12. Check
Enable Keep Alive
if you want the SA to check for an active VPN tunnel
while the tunnel is connected.
13. Check
Enable Perfect Forward Secrecy
for added security.
14. Check
Enable Windows Networking (NetBIOS) broadcast
if the remote site
is allowed access to network resources by browsing the Windows Network Neigh-
borhood.
15. Check
Apply NAT and firewall rules
if applicable.
16. Check
Forward Packets to Remote VPNs
if configuring a “hub and spoke”net-
work.
17. Check
Route all Internet Traffic through this SA
if configuring a remote site
without access to the Internet via the VPN tunnel.
18. Enter the
Default LAN Gateway if Route all Internet traffic
through this SA
is checked.
19. Click OK to close the
Advanced Settings
window.
20. Click
Update
to add the remote network and close the
VPN Destination Net-
work
window. Once the SonicWALL has been updated, a message confirming the
update is displayed at the bottom of the browser window.
integrated_manual.book Page 138 Wednesday, June 13, 2001 6:21 PM