NBB-800
User Manual for NRSW version 4.5.0.100
Parameter
IPsec General Settings
Action
The action to perform if a peer disconnects. Available choices from
the drop-down menu are to clear, hold or to Restart the peer.
IKE Authentication
NetModule routers support IKE authentication through pre-shared keys (PSK) or certificates within a
public key infrastructure. Extended Authentication (XAUTH) leverages RADIUS-like authentication and
can be used to apply user level access control over IPSec.
Using PSK requires the following settings:
Parameter
IPsec IKE Authentication Settings
PSK
The pre-shared key used to authenticate at the peer
Local ID Type
The type of identification for the local ID which can be a
FQDN
,
username@FQDN
or
IP address
Local ID
The local ID value
Remote ID Type
The type of identification for the remote ID
Remote ID
The remote ID value
When using certificates you would need to specify the operation mode. When run as PKI client (ini-
tiator) you can create a Certificate Signing Request (CSR) in the certificates section which needs to
be submitted at your Certificate Authority and imported to the router afterwards. In PKI server mode
(concentrator), the router represents the Certificate Authority and issues the certificates for remote
peers. They are revokable.
Using XAUTH the following settings can be made:
Parameter
IPsec XAUTH Settings
User name
The name of the XAUTH user
User password
The password of the XAUTH user
Group name
The group ID
Group password
The group secret
103
Содержание NB1800
Страница 2: ...NBB 800 User Manual for NRSW version 4 5 0 100 2...
Страница 15: ...NBB 800 User Manual for NRSW version 4 5 0 100 3 Specifications 3 1 Appearance 15...
Страница 125: ...NBB 800 User Manual for NRSW version 4 5 0 100 125...
Страница 186: ...NBB 800 User Manual for NRSW version 4 5 0 100 5 9 LOGOUT Please use this menu to log out from the Web Manager 186...