Refer
e
nc
e M
anu
al
for
the
Pr
oSafe
802.11
g
Wire
less
VPN Fir
e
wal
l FVG318
7-
16
Adva
nced Vir
tu
a
l Private Networkin
g
BE
TA
The
IKE Phase 2
para
mete
rs use
d in Sce
nario 1 are
:
•
T
ripleDES
•
S
HA-1
•
E
SP tu
nn
el mo
de
•
M
ODP g
rou
p 2
(1
024
b
its)
•
P
erfect forward
secrecy for r
ekeying
•
S
A li
feti
me of
36
00
secon
ds (o
ne ho
ur)
wit
h n
o k
ilob
ytes rekeyin
g
•
S
electors fo
r all IP p
roto
cols, all p
orts,
between
10
.5.6
.0
/24
an
d
172
.2
3.9
.0/2
4,
usin
g IPv
4
subnets
FVG318 Scenario 1: FVG318 to
Gateway B IKE and VPN Policies
Note
: This sce
na
rio ass
umes all ports are ope
n on th
e
FVG3
18
. Y
ou can
verify t
his b
y reviewing
the
security settings as seen in the
Figu
re 5-2
on
page 5
-3
.
Figu
re 7-
6:
L
A
N to LAN VPN acc
es
s fro
m
a
n
FVG318
to
a
n
FVG318
Use
this scenario i
llustration and confi
guration scr
een
s as a mod
el
to
bui
ld y
ou
r confi
guratio
n.
1.
Log
in to
th
e FVG318 labeled
Gateway A as in
the illustration.
Log in at the
default addres
s of
http://192.168.0.1
with
the default
user name of
adm
in
an
d
de
fault passw
ord
of
password
, or
using
whatever p
assword
an
d
LAN
ad
dress
you
h
av
e
chose
n.
2.
Configur
e the
W
A
N (Internet) and
LAN
I
P
addr
esses
of the FV
G318.
a.
From
the main menu S
etup section, click t
he
Basic Setup
li
nk
to
go
back
to
the Basic
Settings menu.
FVS318
Gateway
B
Scenario
1
14.15.16.17
22.23.24.25
WA
N
IP
WA
N
IP
172.23.9.1/24
10.5.6.1/24
LAN
IP
LAN
IP
Gateway
A
FVS318