Security Settings

Security settings include the Firewall and IPSec parameters. All of the security functionality is keyed.

Firewall Settings (for BreakWater Firewall)

set security firewall option [ ClearSailing SilentRunning LANdLocked ]

The 3 settings for BreakWater are discussed in detail on page page 125.

SafeHarbour IPSec Settings

SafeHarbour VPN is a tunnel between the local network and another geographically dis- persed network that is interconnected over the Internet. This VPN tunnel provides a secure, cost-effective alternative to dedicated leased lines. Internet Protocol Security (IPsec) is a series of services including encryption, authentication, integrity, and replay pro- tection. Internet Key Exchange (IKE) is the key management protocol of IPsec that estab- lishes keys for encryption and decryption. Because this VPN software implementation is built to these standards, the other side of the tunnel can be either another Netopia unit or another IPsec/IKE based security product. For VPN you can choose to have traffic authenti- cated, encrypted, or both.

When connecting the Netopia unit in a telecommuting scenario, the corporate VPN settings will dictate the settings to be used in the Netopia unit. If a parameter has not been speci- fied from the other end of the tunnel, choose the default unless you fully understand the ramifications of your parameter choice.

set security ipsec option (off) {on off}

Turns on the SafeHarbour IPsec tunnel capability. Default is off. See “IPSec” on page 130 for more information.

set security ipsec tunnels name "123"

The name of the tunnel can be quoted to allow special characters and embedded spaces.

270

Page 270
Image 270
Netopia 2200 manual Security Settings, Set security ipsec option off on off, Set security ipsec tunnels name, 270