VPN configuration
59
Configuration Guide
Configuring client termination
Complete this procedure to configure client termination.
Procedure steps
Step
Action
1
From the BSG navigation pane, select
Configuration, VPN, Users, Client
Termination
tab.
The VPN Client Termination pane appears.
2
Click the
Policy
Action,
Create
check box.
3
In the
Policy
Name
field, type the policy name.
4
From the
Interface
Name
list, select the WAN interface.
5
From the
Policy
Status
list, select
ACTIVE
.
6
From the
Policy
Type
list, select
IKE
Pre-Shared
.
7
In the
IKE
(Phase 1) Proposal
box, from the
IPSec
Encryption
list, select the
encryption standard.
8
From the
IPSec
Authentication
list, select the authentication.
9
From the
DH
Group
list, select
Group
1
,
Group
2
, or
Group
5
.
10
From the
Life
Time
list, select the
Seconds
,
Minutes
, or
Hours
.
11
In the
Life
Time
Value
field, enter the life time value.
12
From the
Peer
Identity
Type
list, select
IPV4
,
FQDN
,
, or
KEYID
for the
peer identity type.
13
From the
Peer
Identity
Value
field, select the peer identity value.
The list contains the Remote Identity values entered on the VPN Global Settings
screen.
14
From the
Local
Identity
Type
list, select
IPV4
,
FQDN
,
, or
KEYID
for the
local identity type.
15
In the
Local
Identity
Value
field, enter the local identity value.
16
In the
Traffic
Selector
box, in the
Local
Address
field, enter the source IP
address of outbound traffic.
17
In the
Local
Address
Mask
field, enter the local network mask of outbound
traffic.
The local address is a local network on the LAN side of the BSG.
18
In the
Remote
Address
field, enter the destination IP address of outbound
traffic.
The remote address is the same network as the client address pool.
19
In the
Remote
Address
Mask
field, enter the destination network mask of
outbound traffic.
20
From the
Protocol
list, select the type of traffic you want to protect.
21
In the
IPSec
(Phase 2) Proposal
box, from the
Protocol
list, select
ESP
or
AH
.
Содержание BSG12aw 1.0
Страница 14: ...14 Introduction NN47928 500 NN47928 500 ...
Страница 22: ...22 WAN configuration NN47928 500 NN47928 500 ...
Страница 54: ...54 SIP configuration NN47928 500 NN47928 500 ...
Страница 80: ...80 QoS configuration NN47928 500 NN47928 500 ...
Страница 82: ...82 Advanced configuration NN47928 500 NN47928 500 ...
Страница 110: ...110 LAN advanced configuration NN47928 500 NN47928 500 ...
Страница 144: ...144 IP routing advanced configuration NN47928 500 NN47928 500 ...
Страница 152: ...152 DHCP advanced configuration NN47928 500 NN47928 500 ...
Страница 164: ...164 QoS advanced configuration NN47928 500 NN47928 500 ...
Страница 176: ...176 VPN advanced configuration NN47928 500 NN47928 500 ...
Страница 200: ...200 Port management advanced configuration NN47928 500 NN47928 500 ...