Allied Telesis NetScreen Routers manual Set the VPN IKE IDs and use Main Mode

Page 27

Set the VPN IKE IDs and use Main Mode

Solutions with a NAT device in the tunnel path need to have IKE IDs specified. For all solutions, we recommend using Main mode instead of the default Aggressive mode. This section describes how to set both of these.

1.Specify the Local and Peer IKE IDs

On the VPN > Settings page, click on the icon of a note and pencil at the right of the AlliedTelesis policy’s entry. The VPN policy dialog box opens.

On the General tab, enter the Local and Peer IKE IDs. Select “type” of Domain Name. The values do not have to be real domain names, but must match the values on your Allied Telesis router (remember that “local” on the SonicWALL is “remote” on the Allied Telesis, and so on).

Page 27 AlliedWare™ OS How To Note: VPNs with SonicWALL routers

Image 27
Contents AlliedWareTM OS Related How To Notes What information will you find in this document?Which products and software version does it apply to? Router NetworkStart How to configure the Allied Telesis routerVPN tunnel 1. Open the Configuration Wizards Name the VPN connection Start the Site-to-Site VPN wizardEnter the remote site’s LAN IP address Enter the remote site’s WAN IP addressEnter the shared secret key Check the settingsSpecify Peer IDs Finish the wizard Check the settings againManager Set the PC’s IP address How to configure the SonicWALL routerAccess the Router Connect a PC to the routerLog on Browse to the router’s management GUI14 AlliedWare OS How To Note VPNs with SonicWALL routers Customise the router and set up the network Change the administrator passwordSet the time zone Choose the type of WAN address Enter the WAN settingsEnter the LAN address Set up the Dhcp serverClick the Close button Log in again Open the Address Objects summary Define the LAN subnet of the peerDefine the address object Open the Custom Address Objects summary22 AlliedWare OS How To Note VPNs with SonicWALL routers Create the VPN Return to the Configuration WizardsSelect the networks for each end of the LAN Create the Site-to-Site policySpecify security settings 26 AlliedWare OS How To Note VPNs with SonicWALL routers Specify the Local and Peer IKE IDs Set the VPN IKE IDs and use Main ModeIf necessary, restart the router Specify IKE Main ModeHow to test the tunnel Check the tunnel statusPing the SonicWALL LAN How to use the CLI instead of the GUI Wizard, for Remote Peer IP