Phase 1 Basic Settings - Fortinet FortiGate FortiGate-1000A Administration Manual

Fortinet fortigate fortigate-1000a: user guide
Hide thumbs Also See for FortiGate FortiGate-1000A:
Table of Contents

Advertisement

VPN

Phase 1 basic settings

FortiGate-1000A/FA2 Administration Guide
Encryption
The names of the encryption and authentication algorithms used by each
phase 1 configuration.
Algorithm
Delete and Edit
Delete or edit a phase 1 configuration.
icons
Figure 128:Phase 1 basic settings
Gateway Name
Remote Gateway
IP Address
Dynamic DNS
Mode
Authentication Method
01-28011-0254-20051115
Enter a name that reflects the origination of the remote
connection.
Select the nature of the remote connection:
If a remote peer with a static IP address will be connecting to
the FortiGate unit, select Static IP Address.
If one or more FortiGate/FortiClient dialup clients with
dynamic IP addresses will be connecting to the FortiGate unit,
select Dialup User.
If a remote peer that has a domain name and subscribes to a
dynamic DNS service will be connecting to the FortiGate unit,
select Dynamic DNS.
If you set Remote Gateway to Static IP Address, type the IP
address of the remote peer.
If you set Remote Gateway to Dynamic DNS, type the domain
name of the remote peer.
Select Main or Aggressive, depending on the Peer Options
setting.
In Main mode, the phase 1 parameters are exchanged in
multiple rounds with encrypted authentication information.
In Aggressive mode, the phase 1 parameters are exchanged
in single message with authentication information that is not
encrypted. You must select Aggressive when the remote
FortiGate unit has a dynamic IP address.
Select Pre-shared Key or RSA Signature.
Phase 1
263

Advertisement

Table of Contents
loading

Table of Contents