UTT Technologies Chapter 12 VPN
http://www.uttglobal.com
Page 239
Unestablished
The IKE SA and IPSec SAs are not established.
IKE Negotiating
IKE Phase 1 negotiation is in progress; the IKE SA is not established yet.
IPSec Negotiating The IKE SA is established; IKE Phase 2 negotiation is in progress.
Established
The IPSec SAs are established.
Table 12-2 Description of IPSec SA Status
Remote Gateway:
It displays the IP address of the remote IPSec device.
Remote Subnet :
It displays the
Subnet IP (Remote)
you specify in the
VPN >
IPSec > IPSec Settings
page.
Bind to:
It indicates the interface to which the IPSec tunnel is bound. If the IPSec
tunnel is bound to a physical interface, it will display the physical interface’s name
(such as, eth2 refers to WAN1 interface); if the IPSec tunnel is bound to a PPPoE
virtual interface, it will display the corresponding PPPoE connection’s name; else, if
the IPSec tunnel is bound to a PPTP or L2TP virtual interface, it will display the
corresponding tunnel’s ID.
Local Subnet :
It displays the
Subnet IP (Local)
you specify in the
VPN > IPSec >
IPSec Settings
page.
Connect:
In the
AutoKey (IKE)
mode, the IPSec tunnel establishment can be
triggered manually or by traffic. If you want to establish an IPSec tunnel manually,
select the leftmost check box of the corresponding entry, and then click the
Connect
button.
Disconnect:
If you want to disconnect an established IPSec tunnel manually, select
the leftmost check box of the corresponding entry, and then click the
Disconnect
button.
12.2.4 How to Add, View, Edit and Delete IPSec Entries
Add an IPSec Entry:
If you want to add an IPSec entry, click on
Add
button
to go to
setup page, and then configure it, lastly click the
Save
button.
View IPSec Entry(s):
When you have configured some IPSec entries, you can view
them in the
IPSec List
.
Enable
an IPSec Entry:
The
Enable
check box is used to enable or disable the
corresponding IPSec entry. The default value is checked, which means the entry is in
effect. If you want to disable the IPSec entry temporarily instead of deleting it, please