6: Network Settings
PremierWave® XN Intelligent Gateway User Guide
69
To Configure VPN Settings
Using Web Manager
To view or configure VPN information, click
VPN
in the menu.
Using the CLI
To enter the VPN command level:
enable -> config -> vpn
Using XML
Include in your file:
<configgroup name = "vpn">
NAT Traversal
Select to enable or disable NAT Traversal. If there is an external NAT
device between VPN tunnels, the user must enable NAT Traversal.
Encryption
Select the encryption algorithm in key exchange.
Authentication
Select the hash algorithm in key exchange.
DH Group
Select the Diffie-Hellman group (the Key Exchange group between the
Remote and VPN Gateways).
IKE Lifetime
Enter the lifetime, in hours, for IKE SA.
ISAKMP PHASE 2 (ESP)
Encryption
Select the encryption Algorithm in data exchange.
Authentication
Select the hash Algorithm in data exchange.
DH Group
Select the Diffie-Hellman groups (the Key Exchange group between the
Remote and VPN Gateways) for Phase 2.
SA Lifetime
Enter the lifetime, in hours, for SA in Phase 2.
Unreachable Host Detection
Host
Enter the Host to use failover host and ping interval to monitor connectivity
with a host on the remote network.
Ping Interval
Indicate the ping interval, in minutes, to use failover host and ping interval to
monitor connectivity with a host on the remote network.
Max Tries
Enter the tries for the VPN tunnel is restarted if Max Tries pings to the host
fail.
VPN Settings
Description