Appendix D Configuring for interoperability 215

Authentication Method: Pre-Shared key

Encrypt Alg: DES

Hash Alg: MD5

SA Life: Seconds and 3000 (Seconds)

Key Group: Diffie-Hellman Group 1

13On the Key Exchange (Phase 2), Proposal 1 window, enable the following:

Encapsulation Protocol (ESP)

Encrypt Alg: DES

Hash Alg: MD5

Encapsulation: Tunnel

SA Life: Seconds and 3000 (Seconds)

Configuring the VPN Router for IRE interoperability

To configure the VPN Router for IRE interoperability:

1Go to Profiles > Networks and click Edit.

2Create the network object used for local accessible networks:

3In the Networks Edit window, enter the IP address for the new subnet; for example, 10.18.0.45.

4Enter the subnet mask for the new network: 255.255.0.0.

5Click Add.

The Networks Edit window reappears and shows the newly created subnet in the Current Subnets list for the named network.

6Add each local subnet for which you want tunneled connections coming to or going from the VPN Router to a network profile.

7On the Profiles > Branch Office: Edit GROUP window, verify that your settings are synchronized with the SafeNet client.

8Create and configure the IPsec Branch Office connection on the VPN Router,

using the network profile you just created for the local accessible network. On the Profiles > Branch Office window, enable the IPsec Authentication: Text Pre-Shared Key option.

Nortel VPN Router Troubleshooting

Page 215
Image 215
Nortel Networks NN46110-602 manual Configuring the VPN Router for IRE interoperability, Encapsulation Protocol ESP