Configuring IPSec In Windows 2000
39
3In the menu click Console, and then Add/Remove Snap-in.
The Add/Remove Snap-in screen appears.
4Click Add.
The Add Standalone Snap-in screen appears.
5Select IP Security Policy Management, and then click Add.
The Select which computer this Snap-in will manage screen appears.
6Enable the Local computer option.
7Click Finish, Close, and then OK.
Creating the Policy
This sequence creates and names the new security policy.
The Console1 and Console Root screen appears with IP Security Policies on Local Machine
displayed in the list.
1In the left pane, click IP Security Policies on Local Machine.
2Right-click inside the right pane below the list items.
3From the pop-up menu, select Create IP Security Policy.
The IP Security Policy Wizard Starts.
4Click Next.
The IP Security Policy Name screen appears.
5Enter a name for the new security policy that you are creating. You can enter a
description to help you identify this policy.
6Click Next.
The Requests for Secure Communication screen appears.
7Clear the Activate the default response rule check box.
8Click Next and then Finish.
A screen appears with the name of the new security policy in the title bar.
9Click Add.
The Security Rule Wizard starts.
10 Click Next.
The Tunnel Endpoint screen appears.
11 Enable the default option This rule does not specify a tunnel, and then click Next.
The Network Type screen appears.
12 Enable the default option All network connections, and then click Next.
The Authentication Methods screen appears.
13 Enable the Use this string to protect the key exchange (preshared key): option, type
the appropriate string text in the entry field, and then click Next.
Creating a Filter
This sequence creates a filter for the policy.
The IP Filter List screen appears.
1Click Add.
A new IP Filter List screen appears.