Configuration
General
For setting up the tunnel you will have to configure the following parameters first:
Parameter
Remote peer
DPD Status
Detection cycle
Failure threshold
Action
NB2710 User Manual 4.0
Figure 5.32.: IPsec Configuration
IPsec General Settings
IP address or host name of the remote IPsec peer. You may specify
0.0.0.0 to act as a responder for roadwarrior clients.
Specifies whether Dead Peer Detection (see RFC 3706) shall be
used. DPD will detect any broken IPSec connections, in particular
the ISAKMP tunnel, and refresh the corresponding SAs (Security
Associations) and SPIs (Security Payload Identifier) for a faster
re-establishment of the tunnel.
The delay (in seconds) between DPD keepalives that are sent for
this connection (default 30 seconds)
The number of unanswered DPD requests until the IPsec peer is
considered dead (the router will then try to re-establish a dead
connection automatically)
The action to perform if a peer disconnects. Available choices from
the drop-down menu are to clear, hold or to Restart the peer.
91
Need help?
Do you have a question about the NB2710 and is the answer not in the manual?