MH-5001 User Manual
Chapter 14
Virtual Private Network –Dynamic IPSec
118
Step 3.
Customize the rule
Check the
Active
checkbox. Enter a name for
this rule like
IKErule
. Enter the
Local IP
Address
(
192.168.40.0/255.255.255.0
)
and the
Remote IP Address
(
192.168.88.0/255.255.255.0
). Select the
Outgoing Interface
of this Device. Select
Dynamic IP
in the Peer’s IP Address. Be sure to
select
Aggressive
mode for the dynamic
remote gateway address type. Click the
ESP
Algorithm
and select
Encrypt and
Authenticate (DES, MD5)
. Enter the
Pre-Shared Key
as
1234567890
. Click the
Apply
button to store the settings. Note, In the
Action region. It should choose either
ESP
Algorithm
or
AH Algorithm
, or system will
show error message. If you hope to set the
detailed item of IKE parameter. Click the
Advanced button in this page. Otherwise it is ok to
just leave the value default.
Note that
Peers Identifier
must NOT be IP
Address type in the Dynamic IP type. So, you
have to select
FQDN (domain name)
or
user
FQDN (mailbox)
as the
Peer’s Identifier
.
ADVANCED SETTINGS > VPN Settings > IPSec > IKE > Add
Step 4.
Detail settings of IPSec IKE
In this page, we will set the detailed value of IKE
parameter. For the related field, please refer to
Table 13-5
indicated.
ADVANCED SETTINGS > VPN Settings > IPSec > IKE > Add >
Advanced
Self local IP
Address
The opposite
side IP Address