Virtual Private Networking Using IPSec and L2TP Connections
258
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
2. Specify the following default lifetimes in seconds to match the co nf i gu ra t io n o n t he VP N
firewall:
Authentication (IKE), Default. Enter 3600 seconds.
Note: The default setting is 28800 seconds (8 hours). However, for a Mode
Config configuration, NETGEAR recommends 3600 seconds (1 hour).
Encryption (IPSec), Default. Enter 3600 seconds.
3. Select the Dead Peer Detection (DPD) check box, and configure the following DPD settings
to match the configuration on the VPN firewall:
Check Interval. Enter 30 seconds.
Max. number of entries. Enter 3 retries.
Delay between entries. Leave the default delay setting of 15 seconds.
4. Click Apply to use the new settings immediately, and click Save to keep the settings for
future use.
The Mode Config configuration of the VPN client is now complete.
Test the Mode Config Connection
To test the Mode Config connection from the VPN client to the VPN firewall:
1. Right-click the system tray icon, and select Open tunnel ‘Tunnel_ModeConfig’.
Figure 169.
When the tunnel opens successfully, the Tunnel opened message displays above the
system tray, and the VPN client displays a green icon in the system tray.
Figure 170.
2. Verify that the VPN firewall issued an IP address to the VPN client. This IP address
displays in the VPN Client address field on the IPSec pane of the VPN client. (The
following figure shows the upper part of the IPSec pane only.)