ProSecure Unified Threat Management (UTM) Appliance

Table 81. VPN client IPSec configuration settings (Mode Config) (continued)

Setting

Description

 

 

 

Subnet mask

Enter 255.255.255.0 as the remote subnet mask of the UTM that opens the VPN

 

tunnel. This is the LAN IP subnet mask that you specified in the Local Subnet Mask

 

field on the Add Mode Config Record screen of the UTM. If you left the Local

 

Subnet Mask field blank, enter the UTM’s default IP subnet mask.

 

 

 

ESP

Encryption

Select 3DES as the encryption algorithm from the drop-down list.

 

 

 

 

Authentication

Select SHA-1as the authentication algorithm from the drop-down

 

 

list.

 

 

 

 

Mode

Select Tunnel as the encapsulation mode from the drop-down list.

 

 

 

PFS and Group

Select the PFS check box, and then select the DH2 (1024) key group from the

 

drop-down list.

 

 

Note: On the UTM, this key group is referred to as Diffie-Hellman Group 2 (1024

 

bit).

 

 

 

 

4.Click Apply to use the new settings immediately, and click Save to keep the settings for future use.

Configure the Mode Config Global Parameters

To specify the global parameters:

1.Click Global Parameters in the left column of the Configuration Panel screen. The Global Parameters pane displays in the Configuration Panel screen.

Figure 192.

Virtual Private Networking Using IPSec, PPTP, or L2TP Connections

325

Page 325
Image 325
NETGEAR STM150EW-100NAS, UTM5EW-100NAS manual Configure the Mode Config Global Parameters, 325