M2M
Cellular
Gateway
Index
skipping
is
used
to
reserve
slots
for
new
function
insertion,
when
required.
187
Dynamic
VPN
is
suitable
for
the
Initiator
being
a
mobile
site
or
a
mobile
device
with
a
dynamic
IP,
only
the
Responder
has
a
“Static
IP”
or
a
“FQDN”.
Two
phases
(IKE
and
IPSec)
to
negotiate
for
establishing
an
IPSec
VPN
tunnel
with
pre
‐
shared
key
and
optional
X
‐
Auth
account
/
password.
Parameter
Setup
Example
For
Network
‐
A
at
HQ
Following
5
tables
list
the
parameter
configuration
for
above
example
diagram
of
IPSec
VPN
tunnel
in
Network
‐
A.
Use
default
value
for
those
parameters
that
are
not
mentioned
in
these
5
tables.
Configuration
Path
[IPSec]
‐
[Configuration]
IPSec
■
Enable
Configuration
Path
[IPSec]
‐
[Tunnel
Configuration]
Tunnel
■
Enable
Tunnel
Name
dvpn
‐
101
Interface
WAN
1
Tunnel
Scenario
Dynamic
VPN
Operation
Mode
Always
on
Configuration
Path
[IPSec]
‐
[Local
&
Remote
Configuration]
Local
Subnet
10.0.76.0
Local
Netmask
255.255.255.0
Configuration
Path
[IPSec]
‐
[Authentication]
Key
Management
IKE+Pre
‐
shared
Key
12345678
Local
ID
User
Name
Network
‐
B
Configuration
Path
[IPSec]
‐
[IKE
Phase]
Negotiation
Mode
Main
Mode
X
‐
Auth
None
For
Network
‐
B
at
Mobile
Office
Following
5
tables
list
the
parameter
configuration
for
above
example
diagram
of
IPSec
VPN
tunnel
in
Network
‐
B.
Use
default
value
for
those
parameters
that
are
not
mentioned
in
these
5
tables.
Please
also
note
that
the
authentication
parameters
of
both
peers
must
match
each
other
to
complete
the
authentication
process
successfully,
and
it
is
just
for
an
example
here.
In
addition,
Negotiation
Mode
and
X
‐
Auth
in
"IKE
Phase"
configuration
window
should
be
also
matched
on
both
peers.
And
there
is
at
least
one
proposal
entity
in
IKE
Proposal
Definition
and
at
least
one
proposal
entity
in
IPSec
Proposal
Definition
are
same
for
both
peers.
Use
the
default