NETGEAR SRX5308 Reference Manual page 165

Prosafe gigabit quad wan ssl vpn firewall
Hide thumbs Also See for SRX5308:
Table of Contents

Advertisement

ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Table 38. Add IKE Policy screen settings (continued)
Setting
Description
Local
Select Local Gateway
From the drop-down list, select one of the four WAN interfaces to function as the
local gateway.
Identifier Type
From the drop-down list, select one of the following ISAKMP identifiers to be used
by the VPN firewall, and then specify the identifier in the field below:
• Local WAN IP. The WAN IP address of the VPN firewall. When you select this
• FQDN. The Internet address for the VPN firewall.
• User FQDN. The email address for a local VPN client or the VPN firewall.
• DER ASN1 DN. A distinguished name (DN) that identifies the VPN firewall in
Identifier
Remote
Identifier Type
From the drop-down list, select one of the following ISAKMP identifiers to be used
by the remote endpoint, and then specify the identifier in the field below:
• Remote WAN IP. The WAN IP address of the remote endpoint. When you
• FQDN. The FQDN for a remote gateway.
• User FQDN. The email address for a remote VPN client or gateway.
• DER ASN1 DN. A distinguished name (DN) that identifies the remote endpoint
Identifier
IKE SA Parameters
Encryption Algorithm
From the drop-down list, select one of the following five algorithms to negotiate
the security association (SA):
• DES. Data Encryption Standard (DES).
• 3DES. Triple DES. This is the default algorithm.
• AES-128. Advanced Encryption Standard (AES) with a 128-bit key size.
• AES-192. AES with a 192-bit key size.
• AES-256. AES with a 256-bit key size.
Authentication
From the drop-down list, select one of the following two algorithms to use in the
Algorithm
VPN header for the authentication process:
• SHA-1. Hash algorithm that produces a 160-bit digest. This is the default
• MD5. Hash algorithm that produces a 128-bit digest.
Virtual Private Networking Using IPSec Connections
option, the Identifier field masks out.
the DER encoding and ASN.1 format.
Depending on the selection in the Identifier Type drop-down
list, enter the IP address, email address, FQDN, or
distinguished name.
select this option, the Identifier field masks out.
in the DER encoding and ASN.1 format.
Depending on the selection of the Identifier Type drop-down
list, enter the IP address, email address, FQDN, or
distinguished name.
setting.
165

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents