Destination Networks
In this section, enter the network settings for the remote VPN site. Include the subnet mask
which determines broadcast addresses for NetBIOS support.
•
Use this SA as the default route for all Internet traffic (Security Associations using
IKE with Pre-shared Secret and Manual Key) - Enable this check box if all remote VPN
connections access the Internet through this SA. You can only configure one SA to use this
setting.
•
Destination network obtains IP addresses using DHCP through this SA (Security
Associations using IKE and Pre-shared Secret but not Group VPN) - Enable this check box
if you are managing your IP address allocation from a central location.
•
Specify destination networks below - Configure the destination networks for your VPN
Security Association. Click Destination Networks to enter the IP address and subnet
mask.
VPN Advanced Settings
All of the Advanced Settings for VPN connections are accessed by clicking Advanced
Settings located on the Configure tab. The following settings are available in the Edit
Advanced Settings window:
•
Use Aggressive Mode
•
Enable Keep Alive
•
Require authentication of local users
•
Require authentication of remote users
- Remote users behind VPN gateway
- Remote VPN clients with XAUTH
•
Enable Windows Networking (NetBIOS) broadcast
•
Apply NAT and firewall rules
•
Forward packets to remote VPNs
•
Enable Perfect Forward Secrecy
•
Phase 2 DH Group
•
Default LAN Gateway
SonicWALL VPN Page 115