Page 126 / 238
Scroll up to view Page 121 - 125
Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
7-14
Virtual Private Networking
202-10085-01, March 2005
3.
Give the New Connection a name, such as
to_FVS
.
Figure 7-16:
New connection named
4.
In the Remote Party Identity section, select ID Type of IP Subnet.
5.
Enter the LAN IP Subnet Address and Subnet Mask of the FVS124G's LAN.
6.
Select 'Connect using Secure Gateway Tunnel'.
7.
Under ID Type, select 'Domain Name' and 'Gateway IP Address'.
Page 127 / 238
Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
Virtual Private Networking
7-15
202-10085-01, March 2005
8.
For Domain Name, enter 'fvs_local.com' and enter the WAN IP Address of the FVS124G.
Figure 7-17:
Remote client info
9.
In the left frame, click on My Identity.
10.
Select Certificate = None.
11.
Under ID Type, select 'Domain Name'.
The value entered under Domain Name will be of the form '<name><XY>.fvs_remote.com',
where each user must use a different variation on the Domain Name entered here. The <name>
is the policy name used in the FVS124G configuration. In this example, it is 'home'. X and Y
are an arbitrary pair of numbers chosen for each user.
Note
: X may not be zero!
In this example, we have entered home11.fvs_remote.com. Up to fifty user variations can be
served by one policy.
Page 128 / 238
Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
7-16
Virtual Private Networking
202-10085-01, March 2005
12.
Leave Virtual Adapter disabled, and select your computer's Network Adapter. Your current IP
address will appear.
Figure 7-18:
My Identity screen
13.
Before leaving the My Identity menu, click the Pre-Shared Key button.
Page 129 / 238
Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
Virtual Private Networking
7-17
202-10085-01, March 2005
14.
Click Enter Key, type your preshared key, and click OK.
This key will be shared by all users of the FVS124G policy "home".
Figure 7-19:
Pre-shared key
15.
In the left frame, click on Security Policy.
Page 130 / 238
Reference Manual for the ProSafe VPN Firewall 25 with 4 Gigabit LAN and Dual WAN Ports
7-18
Virtual Private Networking
202-10085-01, March 2005
16.
Select Phase 1 Negotiation Mode = Aggressive Mode.
PFS should be disabled, and Replay Detection should be enabled.
Figure 7-20:
Client Security Policy screen