VPN Settings
Mode Configuration
Type
Interface
REMOTE NETWORK
Endpoint
Subnet
ID
Router/Next Hop
LOCAL NETWORK
Subnet
ID
Router/Next Hop
KEY MANAGEMENT
Perfect Forward Secrecy
(PFS)
Pre-shared key (PSK)
ISAKMP PHASE 1 (IKE)
Aggressive Mode
NAT Traversal
Encryption
Authentication
DH Group
IKE Lifetime
ISAKMP PHASE 2 (ESP)
Encryption
Authentication
DH Group
SA Lifetime
PremierWave® Intelligent Gateway User Guide
Description
Click to enable or disable extended authentication operation and the
settings provided to the client during the configuration exchange.
Select the VPN type:
Tunnel - Tunnel mode is used for protecting traffic between networks,
when traffic must pass through intermediate, untrusted network.
Transport - Transport mode is used for end-to-end communication (for
example, for communications between a client and a server).
Select the interface to use to connect to VPN Gateway.
Enter the remote VPN gateway's IP address.
Enter the subnet behind the VPN gateway.
Specify the identifier through which to receive from the remote host during
Phase 1 negotiation.
Enter the next-hop gateway IP address for the VPN gateway.
Define which local devices have access to or can be accessed from the
VPN connection.
Specify the identifier sent to the remote host during Phase 1 negotiation.
Enter the next-hop gateway IP address for our connection to the public
network.
Select to enable or disable whether Perfect Forward Secrecy of keys is
desired on the connection's keying channel. Enabling this feature will
require IKE to generate a new set of keys in Phase 2 rather than using the
same key generated in Phase 1.
Enter the pre-shared key to be used in the IPSec setting between the Local
and VPN Gateway.
Select to enable or disable Aggressive Mode. In Aggressive mode, IKE tries
to combine as much information into fewer packets while maintaining
security. Aggressive mode is slightly faster but less secure.
Select to enable or disable NAT Traversal. If there is an external NAT
device between VPN tunnels, the user must enable NAT Traversal.
Select the encryption algorithm in key exchange.
Select the hash algorithm in key exchange.
Select the Diffie-Hellman group (the Key Exchange group between the
Remote and VPN Gateways).
Enter the lifetime, in hours, for IKE SA.
Select the encryption Algorithm in data exchange.
Select the hash Algorithm in data exchange.
Select the Diffie-Hellman groups (the Key Exchange group between the
Remote and VPN Gateways) for Phase 2.
Enter the lifetime, in hours, for SA in Phase 2.
6: Network Settings
55
Need help?
Do you have a question about the PREMIERWAVE XC HSPA+ and is the answer not in the manual?