Allied Telesis NetScreen Routers manual Specify IKE Main Mode, If necessary, restart the router

Page 28

2.Specify IKE Main Mode

Click on the Proposals tab. Set Exchange to Main Mode. This is the preferred mode because it is more secure.

We also recommend that you change the lifetime for the IPsec (Phase2)

Proposal to 3600 seconds, to match the Allied Telesis router.

Click OK.

3.If necessary, restart the router

You may find that you need to restart the router to allow all changes to take effect. To do this, select System > Restart from the left-hand menu.

Page 28 AlliedWare™ OS How To Note: VPNs with SonicWALL routers

Image 28
Contents AlliedWareTM OS What information will you find in this document? Related How To NotesWhich products and software version does it apply to? Network RouterHow to configure the Allied Telesis router StartVPN tunnel 1. Open the Configuration Wizards Start the Site-to-Site VPN wizard Name the VPN connectionEnter the remote site’s WAN IP address Enter the remote site’s LAN IP addressCheck the settings Enter the shared secret keySpecify Peer IDs Check the settings again Finish the wizardManager How to configure the SonicWALL router Access the RouterConnect a PC to the router Set the PC’s IP addressBrowse to the router’s management GUI Log on14 AlliedWare OS How To Note VPNs with SonicWALL routers Change the administrator password Customise the router and set up the networkSet the time zone Enter the WAN settings Choose the type of WAN addressSet up the Dhcp server Enter the LAN addressClick the Close button Log in again Define the LAN subnet of the peer Open the Address Objects summaryOpen the Custom Address Objects summary Define the address object22 AlliedWare OS How To Note VPNs with SonicWALL routers Return to the Configuration Wizards Create the VPNCreate the Site-to-Site policy Select the networks for each end of the LAN Specify security settings 26 AlliedWare OS How To Note VPNs with SonicWALL routers Set the VPN IKE IDs and use Main Mode Specify the Local and Peer IKE IDsSpecify IKE Main Mode If necessary, restart the routerCheck the tunnel status How to test the tunnelPing the SonicWALL LAN How to use the CLI instead of the GUI Wizard, for Remote Peer IP