Reference Manual for the ProSafe VPN Firewall FVS114

f.In the SA Life menu, select Unspecified.

g.In the Key Group menu, select Diffie-Hellman Group 2.

6.Configure the VPN Client Key Exchange Proposal.

In this step, you will provide the type of encryption (DES or 3DES) to be used for this connection. This selection must match your selection in the FVS114 configuration.

a.Expand the Key Exchange subheading by double clicking its name or clicking on the “+” symbol. Then select Proposal 1 below Key Exchange.

Figure 5-15: Security Policy Editor Key Exchange

b.In the SA Life menu, select Unspecified.

c.In the Compression menu, select None.

d.Check the Encapsulation Protocol (ESP) check box.

e.In the Encrypt Alg menu, select the type of encryption. In this example, use Triple DES.

f.In the Hash Alg menu, select SHA-1.

g.In the Encapsulation menu, select Tunnel.

h.Leave the Authentication Protocol (AH) check box unchecked.

7.Save the VPN Client Settings.

From the File menu at the top of the Security Policy Editor window, select Save.

5-14

Basic Virtual Private Networking

202-10098-01, April 2005

Page 70
Image 70
NETGEAR fvs114 manual Security Policy Editor Key Exchange