ProSecure Unified Threat Management (UTM) Appliance Reference Manual

3.In the IKE SA Parameters section of the screen, locate the DPD fields.

Figure 7-32

4.Select the radio button and complete the fields as explained Table 7-21.

Table 7-21. Dead Peer Detection Settings

Item

Description (or Subfield and Description)

 

 

 

IKE SA Parameters

 

 

 

 

 

Enable Dead Peer

Select the Yes radio button to enable DPD. When the UTM detects an IKE

Detection

connection failure, it deletes the IPsec and IKE SA and forces a

 

reestablishment of the connection. You must enter the detection period and

 

the maximum number of times that the UTM attempts to reconnect (see

 

below).

 

 

 

 

 

Detection Period

The period in seconds between consecutive

 

 

“DPD R-U-THERE” messages, which are sent only when

 

 

the IPsec traffic is idle. The default setting is 10 seconds.

 

Reconnect after

The maximum number of times that the UTM attempts to

 

failure count

reconnect after a DPD situation. When the maximum

 

 

number of times is exceeded, the IPsec connection is

 

 

terminated. The default setting is 3 IKE connection

 

 

failures.

5.Click Apply to save your settings.

7-58

Virtual Private Networking Using IPsec Connections

v1.0, January 2010

Page 270
Image 270
NETGEAR UTM50-100NAS, UTM5-100NAS manual Dead Peer Detection Settings, IKE SA Parameters