Prestige 792H User’s Guide
VPN Screens
14-9
The following table describes the labels in this screen.
Table 14-7 VPN IKE
LABEL
DESCRIPTION
IPSec Setup
Active Select this check box to activate this VPN policy.
Keep Alive
Select either
Yes
or
No
from the drop-down list box.
Select
Yes
to have the Prestige automatically reinitiate the SA after the SA lifetime
times out, even if there is no traffic. The remote IPSec router must also have keep
alive enabled in order for this feature to work.
Name Type up to 32 characters to identify this VPN policy. You may use any character,
including spaces, but the Prestige drops trailing spaces.
IPSec Key Mode Select
IKE
or
Manual
from the drop-down list box.
Manual
is a useful option for
troubleshooting if you have problems using
IKE
key management.
Negotiation Mode
Select
Main
or
Aggressive
from the drop-down list box. Multiple SAs connecting
through a secure gateway must have the same negotiation mode.
Encapsulation
Mode
Select
Tunnel
mode or
Transport
mode from the drop-down list box.
DNS Server (for
IPSec VPN)
If there is a private DNS server that services the VPN, type its IP address here. The
Prestige assigns this additional DNS server to the Prestige 's DHCP clients that have
IP addresses in this IPSec rule's range of local addresses.
A DNS server allows clients on the VPN to find other computers and servers on the
VPN by their (private) domain names.
Local
Local IP addresses must be static and correspond to the remote IPSec router's
configured remote IP addresses.
Two active SAs can have the same configured local or remote IP address, but not
both. You can configure multiple SAs between the same local and remote IP
addresses, as long as only one is active at any time.
In order to have more than one active rule with the
Secure Gateway Address
field
set to
0.0.0.0
, the ranges of the local IP addresses cannot overlap between rules.
If you configure an active rule with
0.0.0.0
in the
Secure Gateway Address
field and
the LAN’s full IP address range as the local IP address, then you cannot configure
any other active rules with the
Secure Gateway Address
field set to
0.0.0.0
.
Summary of Contents for Prestige 792H
Page 1: ...Prestige 792H G SHDSL 4 port Security Gateway User s Guide Version 3 40 BZ 0 March 2004...
Page 8: ......
Page 32: ......
Page 34: ......
Page 40: ......
Page 46: ......
Page 66: ......
Page 86: ...Prestige 792H User s Guide 5 14 WAN Setup Figure 5 6 Advanced WAN Backup...
Page 94: ......
Page 108: ......
Page 112: ......
Page 134: ......
Page 164: ......
Page 178: ...Prestige 792H User s Guide 14 8 VPN Screens Figure 14 3 VPN IKE...
Page 206: ......
Page 210: ......
Page 220: ......
Page 221: ...Maintenance VI Part VI Maintenance This part covers the maintenance screens...
Page 222: ......
Page 234: ......
Page 236: ......
Page 246: ......
Page 268: ......
Page 270: ......
Page 282: ......
Page 286: ......
Page 312: ......
Page 334: ......
Page 348: ......
Page 370: ......
Page 380: ......
Page 388: ......
Page 390: ......
Page 406: ......
Page 410: ......
Page 415: ...XI Part XI Appendices and Index This section provides some Appendices and an Index...
Page 416: ......
Page 420: ......
Page 424: ......
Page 426: ......
Page 430: ......