
Configuring a VPN Security Association
125
Check the
Disable all Windows Networking (NetBIOS) Broadcasts
check
box to disable NetBIOS traffic. Click the
Update
button to save your
changes.
Enable Fragmented Packet Handling
Check the
Enable Fragmented Packet Handling
box to allow the Firewall
to reduce that packet size when communicating with other Firewalls.
Enable this check box if “Fragmented IPSec packet dropped” messages
appear in the Event Log. Click the
Update
button to save your changes.
Viewing the Current
IPSec Security
Associations
The
Current IPSec Security Associations
section of the VPN
Summary
screen shows all Security Associations (SAs) that have been created in the
VPN
Configure
window. The
Name
listed in the summary table links to
the corresponding VPN configuration.
A
Renegotiate
button will appear next to an IKE VPN Security Association
when the VPN connection is active. Click the
Renegotiate
button to
initiate the VPN handshake and the exchange of new encryption and
authentication keys.
The SuperStack 3 Firewall will support 1000 SAs. Of these SAs, 999 will
support a single VPN tunnel, while the remaining single SA can support
up to 100 concurrent VPN tunnels. This is called the “GroupVPN” SA.
Configuring a VPN
Security
Association
To configure the VPN Security Associations click on
VPN
and then select
the
Configure
tab. A window similar to that in Figure 57 displays.
DUA1611-0AAA02.book Page 125 Thursday, August 2, 2001 4:01 PM
Содержание SUPERSTACK 3CR16110-95
Страница 18: ...18 DUA1611 0AAA02 book Page 18 Thursday August 2 2001 4 01 PM...
Страница 50: ...50 DUA1611 0AAA02 book Page 50 Thursday August 2 2001 4 01 PM...
Страница 96: ...96 CHAPTER 6 USING THE FIREWALL DIAGNOSTIC TOOLS DUA1611 0AAA02 book Page 96 Thursday August 2 2001 4 01 PM...
Страница 122: ...122 CHAPTER 8 ADVANCED SETTINGS DUA1611 0AAA02 book Page 122 Thursday August 2 2001 4 01 PM...
Страница 150: ...150 CHAPTER 10 CONFIGURING HIGH AVAILABILITY DUA1611 0AAA02 book Page 150 Thursday August 2 2001 4 01 PM...
Страница 152: ...152 DUA1611 0AAA02 book Page 152 Thursday August 2 2001 4 01 PM...
Страница 166: ...166 CHAPTER 11 ADMINISTRATION AND ADVANCED OPERATIONS DUA1611 0AAA02 book Page 166 Thursday August 2 2001 4 01 PM...
Страница 174: ...174 DUA1611 0AAA02 book Page 174 Thursday August 2 2001 4 01 PM...
Страница 178: ...178 CHAPTER 13 TYPES OF ATTACK AND FIREWALL DEFENCES DUA1611 0AAA02 book Page 178 Thursday August 2 2001 4 01 PM...
Страница 190: ...190 CHAPTER 14 NETWORKING CONCEPTS DUA1611 0AAA02 book Page 190 Thursday August 2 2001 4 01 PM...
Страница 192: ...192 DUA1611 0AAA02 book Page 192 Thursday August 2 2001 4 01 PM...
Страница 206: ...206 APPENDIX D TECHNICAL SUPPORT DUA1611 0AAA02 book Page 206 Thursday August 2 2001 4 01 PM...
Страница 212: ...212 INDEX DUA1611 0AAA02 book Page 212 Thursday August 2 2001 4 01 PM...
Страница 214: ...DUA1611 0AAA02 book Page 214 Thursday August 2 2001 4 01 PM...