
Manual VPN: Setting Up Manual VPN Tunnels
202
Firebox X Edge e-Series
To change Phase 1 configuration:
1
Select the negotiation mode from the
Mode
drop-down list. You can use Main Mode only when
the two devices have static IP addresses. If one or both of the devices have external IP addresses
that are dynamically assigned, you must use Aggressive Mode.
2
Enter the local ID and remote ID. Select the ID types—
IP Address
or
Domain Name
—from the
drop-down lists. Make sure this configuration is the same as the configuration on the remote
device.
Note that on the other device, the local ID type and remote ID type are reversed.
- If your Firebox X Edge or remote VPN device has a static external IP address, set the local ID
type to
IP Address
. Type the external IP address of the Edge or device as the local ID.
- If your Firebox X Edge or remote VPN device has a dynamic external IP address, you must
select
Aggressive Mode
and the device must use Dynamic DNS. For more information, see
“Registering with the Dynamic DNS Service” on page 70. Set the local ID type to
Domain
Name
. Enter the DynDNS domain name of the device as the local ID.
If your Firebox X Edge external interface has a private IP address instead of a public IP address, then your
ISP or the Internet access device connected to the Edge’s external interface (modem or router) does
Network Address Translation (NAT). See the instructions at the end of this section if your Edge’s external
interface has a private IP address.
3
Select the type of authentication from the
Authentication Algorithm
drop-down list. The
options are MD5-HMAC (128-bit authentication) or SHA1-HMAC (160-bit authentication). SHA1-
HMAC is more secure.
4
From the
Encryption Algorithm
drop-down list, select the type of encryption. The options, from
least secure to most secure, are DES-CBC, 3DES-CBC, AES (128 bit), AES (192 bit), and AES (256
bit).
Summary of Contents for Firebox X20E
Page 20: ...The Firebox X Edge and Your Network 8 Firebox X Edge e Series...
Page 32: ...Using the Quick Setup Wizard 20 Firebox X Edge e Series...
Page 64: ...Viewing the Configuration File 52 Firebox X Edge e Series...
Page 92: ...Configuring BIDS 80 Firebox X Edge e Series...
Page 102: ...Configuring the Wireless Card on Your Computer 90 Firebox X Edge e Series...
Page 114: ...Configuring Policies for the Optional Network 102 Firebox X Edge e Series...
Page 138: ...Using Additional Services for Proxies 126 Firebox X Edge e Series...
Page 158: ...Working with Firewall NAT 146 Firebox X Edge e Series...
Page 166: ...Using Certificates on the Firebox X Edge 154 Firebox X Edge e Series...
Page 208: ...Updating Gateway AV IPS 196 Firebox X Edge e Series...
Page 220: ...Frequently Asked Questions 208 Firebox X Edge e Series...
Page 302: ...Limited Hardware Warranty 290 Firebox X Edge e Series...
Page 310: ...298 Firebox X Edge e Series...