Prestige 662HW Series User’s Guide
16-2
VPN Screens
Table 16-1 AH and ESP
ESP AH
AES
Advanced Encryption Standard is a newer method of data
encryption that also uses a secret key. This
implementation of AES applies a 128-bit key to 128-bit
blocks of data. AES is faster than 3DES.
Select
DES
for minimal security and
3DES
or
AES
for
maximum. Select
NULL
to set up a tunnel without
encryption.
Select
MD5
for minimal security and
SHA-1
for
maximum security.
16.3 My IP Address
My IP Address is the WAN IP address of the Prestige. The Prestige has to rebuild the VPN tunnel if
the My IP Address changes after setup.
The following applies if this field is configured as
0.0.0.0
:
The Prestige uses the current Prestige WAN IP address (static or dynamic) to set up the VPN
tunnel.
If the WAN connection goes down, the Prestige uses the dial backup IP address for the VPN
tunnel when using dial backup or the LAN IP address when using traffic redirect. See the chapter
on WAN for details on dial backup and traffic redirect.
16.4 Secure Gateway Address
Secure Gateway Address
is the WAN IP address or domain name of the remote IPSec router (secure
gateway).
If the remote secure gateway has a static WAN IP address, enter it in the
Secure Gateway Address
field. You may alternatively enter the remote secure gateway’s domain name (if it has one) in the
Secure Gateway Address
field.
You can also enter a remote secure gateway’s domain name in the
Secure Gateway Address
field if
the remote secure gateway has a dynamic WAN IP address and is using DDNS. The Prestige has to
rebuild the VPN tunnel each time the remote secure gateway’s WAN IP address changes (there may
be a delay until the DDNS servers are updated with the remote gateway’s new WAN IP address).
16.4.1 Dynamic Secure Gateway Address
If the remote secure gateway has a dynamic WAN IP address and does not use DDNS, enter 0.0.0.0 as
the secure gateway’s address. In this case only the remote secure gateway can initiate SAs. This may
be useful for telecommuters initiating a VPN tunnel to the company network. See
configuration examples.
The Secure Gateway IP Address may be configured as 0.0.0.0 only when using
IKE
key management
and not
Manual
key management.
16.5 VPN Summary Screen
The following figure helps explain the main fields in the web configurator.
Summary of Contents for Prestige 662HW Series
Page 26: ......
Page 28: ......
Page 36: ......
Page 54: ......
Page 56: ......
Page 64: ......
Page 84: ......
Page 100: ......
Page 116: ......
Page 128: ......
Page 150: ......
Page 154: ......
Page 162: ......
Page 168: ......
Page 194: ......
Page 196: ......
Page 200: ......
Page 208: ......
Page 214: ......
Page 216: ......
Page 230: ......
Page 242: ......
Page 244: ......
Page 252: ......
Page 258: ......
Page 262: ......
Page 266: ......
Page 272: ......
Page 286: ......
Page 290: ......
Page 310: ......
Page 328: ......
Page 352: ......
Page 358: ......
Page 362: ......
Page 374: ......
Page 376: ......
Page 394: ......
Page 398: ......
Page 400: ......
Page 410: ......
Page 444: ......
Page 452: ......