Asentria SiteBoss 571 UserManual
Page 46
Remote Host
This is the IP address of the IPsec peer on the opposite side of the tunnel to which the tunnel is bound.
Public Interface
This is the public interface to which the unit's side of the tunnel is bound. The options are ANY, ETH1, ETH2,
PPPP, WIRELESS and DSL. The default is ANY.
This option displays the configuration settings used if Mode is IPsec
This option displays the configuration settings used if Mode is SSL Client or SSL Server.
IPsec Settings
This is a basic description of settings and options for an IPsec VPN. For more information refer to the
and Using an IPsec VPN Feature Guide
on the Asentria Product Information Portal or contact
SiteBoss 571 - VPN 2 IPsec Settings
A) Remote Network [0.0.0.0/0]
B) Private Network [0.0.0.0/0]
C) Authentication Type [PSK]
D) Authentication RSA Key []
E) Authentication Preshared Key []
F) Phase 1 Encryption [3DES]
G) Phase 1 Hash [MD5]
H) Phase 1 DH Group [2]
I) Phase 1 Life (seconds) [1800]
J) Phase 2 Encryption [3DES]
K) Phase 2 Hash [MD5]
L) Phase 2 Life (seconds) [7200]
M) Dead Peer Detection Action [RESTART]
N) Dead Peer Detection Period [30]
O) Dead Peer Detection Timeout [120]
P) Compression [ON]
Q) PFS [ON]
Remote Network
This is the subnet on the opposite side of the tunnel relative to the unit. The unit will route traffic destined to this
subnet from its private subnet.
Private Network
This is the subnet on the unit's side of the tunnel. The unit will route traffic designated to this subnet from the
remote network.
Authentication Type
This is a toggle between PSK (preshared key) and RSA (digital signatures). Default PSK.
Authentication RSA Key
This is the preshared key in use when Authentication Type = PSK
Authentication Preshared Key
This is the peer's public key in use when Authentication Type = RSA. This is a read-only value.
Phase 1 Encryption
This is the phase 1 (IKE) encryption algorithm to use (must be accommodated by IPsec peer). Options are 3DES,
AES128, and AES 256.