13 Policy Management
13-22 VPN 3000 Concentrator Series User Guide
To delete a configured SA, select the SA from the list and click Delete.
If the SA has not been assigned to a filter ruleeven if it has been assigned to a group or userthe
Manager deletes the SA, refreshes the screen, and shows the remaining SAs in the list. There is no
confirmation or undo.
If the SA has been assigned to a filter rule, the Manager asks you to confirm the deletion. See the
Configuration | Policy Management | Traffic Management | Security Associations | Delete screen.
You cannot delete an SA that is configured as part of a LAN-to-LAN connection. See the Configuration
| System | Tunneling Protocols | IPSec LAN-to-LAN | Add | Done screen.
Reminder: The Manager immediately includes your changes in the active configuration. To save the active
configuration and make it the boot configuration, click the Save Needed icon at the top of the Manager
window.
Configuration | Policy Management | Traffic Management | Security Associations | Add or Modify
These screens let you:
Add: Configure and add a new Security Association to the list of configured SAs.
Modify: Modify a configured Security Association.
Note: On the Modify screen, any changes take effect as soon as you click Apply. If the SA is being used by an
active filter rule or group, changes may affect tunnel traffic.