Digi IX20-WAG4 User Manual page 295

Table of Contents

Advertisement

Virtual Private Networks (VPN)
14. (Optional) For Management Priority, set the management priority for this IPsec tunnel. A
tunnel that is up and has the highest priority will be used for central management and direct
device access.
15. (Optional) To configure the device to connect to its remote peer as an XAUTH client:
a. Click to expand XAUTH client.
b. Click Enable.
c. Type the Username and Password that the device will use to authenticate as an
XAUTH client with the peer.
16. (Optional) Click Enable MODECFG client to receive configuration information, such as the
private IP address, from the remote peer.
17. Click to expand Local endpoint.
a. For Type, select either:
n
n
b. Click to expand ID.
i. Select the ID type:
IX20 User Guide
iv. For Peer verification, select either:
Peer certificate: For Peer certificate, paste the peer's X.509 certificate in
l
PEM format.
Certificate Authority: For Certificate Authority chain, paste the
l
Certificate Authority (CA) certificates. These must include all peer
certificates in the chain up to the root CA certificate, in PEM format.
Default route: Uses the same network interface as the default route.
Interface: Select the Interface to be used as the local endpoint.
Auto: The ID will be automatically determined from the value of the tunnels
n
endpoints.
Raw: Enter an ID and have it passed unmodified to the underlying IPsec stack.
n
For Raw ID value, type the ID that will be passed.
Any: Any ID will be accepted.
n
IPv4: The ID will be interpreted as an IP address and sent as an ID_IPV4_ADDR
n
IKE identity.
For IPv4 ID value, type an IPv4 formatted ID. This can be a fully-qualified
domain name or an IPv4 address.
IPv6: The ID will be interpreted as an IP address and sent as an ID_IPV6_ADDR
n
IKE identity.
For IPv6 ID value, type an IPv6 formatted ID. This can be a fully-qualified
domain name or an IPv6 address.
RFC822/Email: The ID will be interpreted as an RFC822 (email address).
n
For RFC822 ID value, type the ID in internet email address format.
IPsec
295

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ix20

Table of Contents