Configure Vpn Policies - NETGEAR SRX5308 Reference Manual

Prosafe gigabit quad wan ssl vpn firewall
Hide thumbs Also See for SRX5308:
Table of Contents

Advertisement

Table 38. Add IKE Policy screen settings (continued)
Setting
XAUTH Configuration
(continued)
4.
Click Apply to save your settings. The IKE policy is added to the List of IKE Policies table.
To edit an IKE policy:
1.
Select VPN > IPSec VPN. The IPSec VPN submenu tabs display, with the IKE Policies
screen in view (see
2.
In the List of IKE Policies table, click the Edit table button to the right of the IKE policy that
you want to edit. The Edit IKE Policy screen displays. This screen shows the same fields as
the Add IKE Policy screen (see
3.
Modify the settings that you wish to change (see the previous table).
4.
Click Apply to save your changes. The modified IKE policy is displayed in the List of IKE
Policies table.

Configure VPN Policies

You can create two types of VPN policies. When you use the VPN Wizard to create a VPN
policy, only the Auto method is available.
Manual. You manually enter all settings (including the keys) for the VPN tunnel on the
VPN firewall and on the remote VPN endpoint. No third-party server or organization is
involved.
Auto. You can generate some settings for the VPN tunnel automatically by using the IKE
(Internet Key Exchange) Protocol to perform negotiations between the two VPN
endpoints (the local ID endpoint and the remote ID endpoint). You still need to manually
enter all settings on the remote VPN endpoint (unless the remote VPN endpoint also has
a VPN Wizard).
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Description
Authentication
For an Edge Device configuration: From the drop-down list,
Type
select one of the following authentication types:
• User Database. XAUTH occurs through the VPN firewall's
• Radius PAP. XAUTH occurs through RADIUS Password
• Radius CHAP. XAUTH occurs through RADIUS Challenge
Username
The user name for XAUTH.
Password
The password for XAUTH.
Figure 104
on page 161).
Figure 105
Virtual Private Networking Using IPSec Connections
user database. Users need to be added through the Add
User screen (see
User Database Configuration
page 176).
Authentication Protocol (PAP). The local user database is
first checked. If the user account is not present in the local
user database, the VPN firewall connects to a RADIUS
server. For more information, see
Configuration
on page 176.
Handshake Authentication Protocol (CHAP). For more
information, see
RADIUS Client Configuration
on page 163).
167
on
RADIUS Client
on page 176.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents