SonicWALL TZ170 manual IKE Phase 1 Proposal, Ipsec Phase 2 Proposal

Page 6

IKE (Phase 1) Proposal

Exchange: Aggressive Mode

DH Group: Group 5

Encryption: 3DES

Authentication: SHA1

Life Time (seconds): 3600

Ipsec (Phase 2) Proposal

Protocol: ESP

Encryption: 3DES

Authentication: SHA1

DH Group Group 2

Life Time (seconds): 3600

Do not enable Perfect Forward Security.

Next select the ‘Advanced’ tab.

Make sure that the option Enable Keep Alive is checked. All other options can be left as they are. Click the OK button.

This completes the settings on the SonicWALL TZ170 installed on Side Alice. Now, we will setup the Check Point unit we will setup the TZ170 unit at Side Bob.

6

Image 6
Contents Testing On the SonicWALL unitsOn FireWall-1 NG SonicWALL Setup Side Alice Before You BeginNetmask Page Page IKE Phase 1 Proposal Ipsec Phase 2 ProposalSonicWALL Setup Side Bob Netmask Page IKE Phase 1 Proposal Ipsec Phase 2 Proposal Check Point FireWall-1NG Setup Page Page Page Page Page Page Page Page IKE Phase 1 Properties Ipsec Phase 2 PropertiesDocument Created 11/16/2004 Last Updated 06/19/2008 Version