10
this network entry in the Network Editor (click the ... button to open the editor), and select it as
the remote network here.
Authentication key: select the certificate you wish to use for authentication.
Proposal template: legacy.
Figure 1.7: The general properties of the VPN connection
2. On the Rule properties dialog box, under IPSec/IKE proposal, click Settings to specify the
following:
IKE proposal
– Encryption algorithm: 3DES
– Integrity function: SHA-1
– IKE mode: main mode
– IKE group: MODP 1024 (group 2)
IPSec proposal
– Encryption algorithm: 3DES
– Integrity function: HMAC-SHA-1
– IPSec mode: tunnel
– PFS group: MODP 1024 (group 2).
c 2002 SSH Communications Security Corp.
Chapter 1. VPN Connection to Nokia CryptoCluster 500 VPN Gateway
VPN with SSH Sentinel and Nokia CryptoCluster