![Fortinet FortiGate 1000A Скачать руководство пользователя страница 274](http://html.mh-extra.com/html/fortinet/fortigate-1000a/fortigate-1000a_administration-manual_2321799274.webp)
274
01-28011-0254-20051115
Fortinet Inc.
Ping Generator
VPN
Ping Generator
The ping generator generates traffic in an IPSec VPN tunnel to keep the tunnel
connection open when no traffic is being generated inside the tunnel. For example,
the ping generator is useful in scenarios where a dialup client or dynamic DNS peer
connects from an IP address that changes periodically—traffic may be suspended
while the IP address changes. You may also use the ping generator to troubleshoot
network connectivity inside a VPN tunnel.
You can configure settings to generate ping commands through two tunnels
simultaneously. The ping interval is fixed at 40 seconds.
The source and destination IP addresses refer to the source and destination
addresses of IP packets that are to be transported through the VPN tunnel. When
source and destination addresses of
0.0.0.0
are entered, no ping traffic is
generated between the source and destination.
To configure the ping generator
1
Go to
VPN > IPSEC > Ping Generator
.
2
Select Enable.
3
In the Source IP 1 field, type the private IP address or subnet address from which
traffic may originate locally (for example,
192.168.20.12
or
192.168.20.0
respectively).
4
In the Destination IP 1 field, enter the IP address of a remote computer:
• For a peer-to-peer configuration, the destination address is the private IP address
of a server or host behind the remote VPN peer (for example,
172.16.5.1/32
).
• For a dialup-client or Internet-browsing configuration where the remote VPN client
is configured to acquire a virtual IP address, the destination address must
correspond to the virtual IP address that can be acquired.
5
If you want to enable a second ping generator, repeat Steps 3 and 4 for the Source IP
2 and Destination IP 2 settings.
6
Select Apply.
Available
Tunnels
A list of defined IPsec VPN tunnels. Select a tunnel from the list and then
select the right-pointing arrow. Repeat these steps until all of the tunnels
associated with the spokes are included in the concentrator.
Members
A list of tunnels that are members of the concentrator. To remove a tunnel
from the concentrator, select the tunnel and select the left-pointing arrow.
Содержание FortiGate 1000A
Страница 80: ...80 01 28011 0254 20051115 Fortinet Inc FortiGate IPv6 support System Network ...
Страница 88: ...88 01 28011 0254 20051115 Fortinet Inc Dynamic IP System DHCP ...
Страница 122: ...122 01 28011 0254 20051115 Fortinet Inc FortiManager System Config ...
Страница 248: ...248 01 28011 0254 20051115 Fortinet Inc Protection profile Firewall ...
Страница 260: ...260 01 28011 0254 20051115 Fortinet Inc CLI configuration User ...
Страница 380: ...380 01 28011 0254 20051115 Fortinet Inc CLI configuration Log Report ...
Страница 392: ...392 01 28011 0254 20051115 Fortinet Inc Glossary ...