V I R T U A L P R I V A T E N E T W O R K S
Configuring Manual Key VPN Implementations
7-8
Security Appliance User Guide
Version 3R2
7
CREATING SECURITY POLICY WITH THE VPN TUNNELS
A VPN tunnel that is created is used in a security policy that specifies the
local and destination networks. Traffic that matches the source and
destination networks specified in policies with the
vpn
option is
encrypted or decrypted. The
set policy
command with the
vpn
option
specifies the VPN tunnel in the security policy to use for encryption and
decryption:
set policy top name {name_str} from {zone} to {zone}
{remote network} {local network} {service} tunnel vpn
{name_str}
Table 7-3
explains these parameters in this command. Refer to the
CLI
Reference Guide
and Command Descriptions
for additional policy
parameters.
key {authentication_key}
Authentication Key—Hexadecimal value
(32 characters in length).
Policy Requirements
Local Network
The local network attached to the
freeGuard Blaze 2100.
Destination Network
Network to which the VPN tunnel will
terminate.
Table 7-3: Policy Requirements for Manual Key VPN
Parameter
Description
top
Moves the tunnel policies to the top of the
policies list.
name {name_str}
Name that uniquely identifies the tunnel
policy.
from {zone}
Source zone from which the VPN traffic
originates.
To {zone}
Destination zone for the VPN traffic.
{remote network}
Specifies the destination network for the VPN
tunnel.
{local network}
Specifies the local network for the VPN
tunnel.
Table 7-2: Required Manual Key VPN Parameters (Continued)
Parameter
Description
Содержание freeGuard Blaze 2100
Страница 1: ...freeGuard Blaze 2100 User Guide Version 3R2...
Страница 14: ...I NT R O DU C T I O N About Document Conventions 1 4 Security Appliance User Guide Version 3R2 1...
Страница 24: ...G E T T IN G S T A R T E D Installing the freeGuard Blaze 2100 2 10 Security Appliance User Guide Version 3R2 2...
Страница 82: ...SY ST EM MA N AGEM E N T Using Traceroute 4 22 Security Appliance User Guide Version 3R2 4...
Страница 192: ...P OL IC Y CO NF I G URA T IO N About Schedules 9 28 Security Appliance User Guide Version 3R2 9...
Страница 216: ...P R E DEF I N E D SER V IC ES A 4 Security Appliance User Guide Version 3R2 A...