SonicWALL VPN Page 135
•
Encrypt and Authenticate (ESP DES HMAC MD5)
uses 56-bit DES encryption and
HMAC MD5 authentication. This method impacts the data throughput of VPN
communications. SonicWALL VPN client software supports this method.
8. Enter a 16-character hexadecimal key in the
Encryption Key
field if you are using DES or
ARCFour encryption. Enter a 48-character hexadecimal key if you are using Triple DES
encryption. This encryption key must match the remote SonicWALL's encryption key.
Note
: Valid hexadecimal characters include 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, a, b, c, d, e, and f.
1234567890abcdef
is an example of a valid DES or ARCFour encryption key. If you enter
an incorrect encryption key, an error message is displayed at the bottom of the browser
window.
When a new SA is created, a 48-character key is automatically generated in the
Encryption Key
field. This can be used as a valid key for Triple DES. If this key is used,
it must also be entered in the Encryption Key field in the remote SonicWALL. If
Tunnel
Only (ESP NULL)
or
Authenticate (AH MD5)
is used, the
Encryption Key
field is
ignored.
9. Enter a 32-character, hexadecimal key in the
Authentication Key
field.
Note
: Valid hexadecimal characters include 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, a, b, c, d, e, and f.
1234567890abcdef1234567890abcdef is an example of a valid authentication key. If you
enter an incorrect authentication key, an error message is displayed at the bottom of the
browser window.
When a new SA is created, a 32-character key is automatically generated in the
Authentication Key
field. This key can be used as a valid key. If this key is used, it must
also be entered in the
Authentication Key
field in the remote SonicWALL. If
authentication is not used, this field is ignored.
10. Click
Add New Network...
to enter the destination network addresses. Clicking
Add
New
Network...
automatically updates the VPN configuration and opens the
VPN Destination
Network
window.
11. Enter the beginning IP address of the remote network address range in the
Range Start
field. If NAT is enabled on the remote SonicWALL, enter a private LAN IP address. Enter
"0.0.0.0" to accept all remote SonicWALLs with matching encryption and authentication
keys.
12. Enter the ending IP address of the remote network's address range in the
Range End
field.
If NAT is enabled on the remote SonicWALL, enter a private LAN IP address. Enter "0.0.0.0"
to accept all remote SonicWALLs with matching encryption and authentication keys.
13. Enter the remote network subnet mask in the
Destination Subnet Mask for NetBIOS
broadcast
field if
Enable Windows Networking (NetBIOS) Broadcast
is selected.
Otherwise, enter "0.0.0.0" in the field.
Содержание TELE3 SP
Страница 1: ...SONICWALL The TELE3 SP Administrator s Guide...
Страница 204: ...Appendices Page 203 Notes...
Страница 205: ...Page 204 SonicWALL TELE3 SP Administrator s Guide...