ACM VPN Configuration
Rev 3 Nov 17
27
4119855
Table 5-2: VPN Peer ID Types
Peer
Location in Software
Peer ID Types
Note: Make sure to use the described formats to enter peer IDs in the peer’s sofware interface, and use
the same formats when entering the IDs on the ACM in the “set vpn ipsec site-to-site peer” command.
oMG/MG90 router WAN > VPNs > (Edit or
Add)
Field: Auth ID
Recommended type:
•
ESN—Router’s unique serial number (<ESN>)
Format: @<ESN>
Alternate types
•
ip address
Format: <IP>
•
custom:
Format: @<custom>
AirLink gateway/
router (LS, ES,
GX, MP series)
VPN > VPN#
Field: Peer Identity Type
Recommended type:
•
FQDN—Free-format string. User must ensure this is
a unique string.
Format: @<FQDN>
Alternate types:
•
User FQDN—Free-format string. User must ensure
string is unique.
Format: @@<USER_FQDN>
•
IP—Router’s IP address
Format: <IP>
Note:
If FQDN or User FQDN is used, read
on page 41 for additional
instructions.
NCP Client for
Windows
Profiles > Identities
Field: Type
Recommended type:
•
Fully Qualified Domain Name
Format: @<FQDN>
Alternate types:
•
IP Address
Format: <IP>
•
Fully Qualified Username
Format: @@<User_FQDN>
•
ASN1 Distinguished Name
Format: <ASN1 Dname>
(Note: Required if using certificate authentication.)
Not compatible with ACM:
•
IP Subnet Address
•
ASN1 Group Name
•
Free string