14.1.2.11 IPSec VPN (ipsec) - Connections
275
External IP/network
Viewed from the perspective of the selected interface, you can enter a remote
address here. This corresponds to the destination IP of outbound packets and the
source IP of inbound packets.
Priority
Select the priority for matching packets.
14.1.2.10-D
Info
Description
This field serves for documentation only.
14.1.2.11
IPSec VPN (ipsec) - Connections
A table gives you an overview of all available objects. If there are more than 10 entries,
a navigation bar will appear below the right bottom hand corner of the table where you
can page through the entries or open the table in fullscreen mode. Pick an entry by
clicking either its title or the pencil icon to enter the detail view. Add new objects by
clicking "New Entry" below the table on the left. Use the dustbin icon to delete entries.
Connection with
First of all you have to decide which type VPN connection you want to add.
Server
A server can have either a static or a dynamic IP address. Typically you want to
establish a VPN connection with a network which is situated behind the server.
In this case the server is in fact a VPN gateway. For each server you have to add
a connection of its own.
Client
A client is expected to have a dynamic IP address. However you can use this
connection type even if the client has a static IP. With a client connection it is not
possible to establish a VPN tunnel to networks behind the client, only to the client
itself. Only a single client connection is necessary to define the connections with
all identically configured clients.
XAuth Client
An XAuth client connection is quite similar to a client connection, however an
additional user authentication is requested using the IPSec extension "XAuth".
Depending on the authenticated user it is possible to assign an individual IP to
the client.