Enabling Ipsec Vpn; Creating An Ipsec Tunnel With Quick Setup - McAfee SG310 Administration Manual

Utm firewall
Table of Contents

Advertisement

VPN menu features
IPSec VPN
• Running, Renegotiating Phase 2 indicates that the tunnel has been established and the tunnel is
attempting to renegotiate its Phase 2 keys.
Further negotiation details can be seen by clicking on the status link. Click Refresh to refresh the
statistics.
Note:
Tunnels that use manual keying are in either a Down or Running state.
To create a basic IPSec tunnel connection, click Quick Setup. The Quick Setup is appropriate and
recommended for an IPSec tunnel between two UTM Firewall appliances that both have static IP addresses.
To create an IPSec tunnel connection using advanced settings, click Advanced.
Procedures you can perform on this page include:

Enabling IPsec VPN

Creating an IPSec tunnel with Quick Setup

Refreshing status of IPSec VPN tunnels
Disabling an IPSec VPN tunnel
Disabling IPSec VPN
Deleting an IPSec VPN tunnel
IPSec Advanced Setup wizard
Enabling IPsec VPN
Use this procedure to enable IPSec VPN.
From the VPN menu, click IPSec. The IPSec VPN Setup page appears.
1
Select the Enable IPSec checkbox.
2
[Optional] Enter a Maximum Transmission Unit (MTU) value in the IPSec MTU field. For most
3
applications, this need not be configured and can be left blank. If set, the MTU value should be between
1400 and 1500. To determine the optimal MTU setting, telnett/ssh to the UTM Firewall and enter the
following command:
mtuchk x.x.x.x
where x.x.x.x is the remote IP address. This command will return the maximum MTU value that you
can use for packets sent to that host.
[Optional] To set the TOS field of packets sent over an IPSec tunnel to zero (0) instead of copying the
4
field from the original packet, select the Hide TOS checkbox.
Click Submit.
5
Creating an IPSec tunnel with Quick Setup
This procedure uses the Quick Setup to connect two sites together that have static IP addresses. For more
control over the configuration options, see
From the VPN menu, click IPSec. The IPSec VPN Setup page appears.
1
Click Quick Setup. The Tunnel Settings page appears
2
262
McAfee UTM Firewall 4.0.4 Administration Guide
Setting up the branch
office.
(Figure
264).

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sg560Sg560uSg565Sg580

Table of Contents