Enter a secret in the Preshared Secret field. This must remain confidential. In this example, enter the Preshared Secret used at the branch office CyberGuard SG appliance, which was: This secret must be kept confidential.

Select a Phase 1 Proposal. In this example, select the 3DES-SHA-Diffie Hellman Group 2 (1024 bit) option (same as the Branch Office Phase 1 Proposal).

Click the Continue button to configure the Phase 2 Settings.

Phase 2 settings page

Set the length of time before Phase 2 is renegotiated in the Key lifetime (m) field. In this example, leave the Key Lifetime as the default value of 60 minutes.

Select a Phase 2 Proposal. In this example, select the 3DES-SHA-Diffie Hellman Group 2 (1024 bit) option (same as the Branch Ofiice Phase 2 Proposal).

Define the Local Network behind the CyberGuard SG appliance that is to have access through the tunnel. In this example, enter 192.168.1.0 / 255.255.255.0 in the field.

Define the Remote Network behind the remote party that is to have access through the tunnel. In this example, enter 192.168.2.0 / 255.255.255.0 in the field.

Click the Apply button to save the tunnel configuration.

135

Virtual Private Networking

Page 139
Image 139
SnapGear 2.0.1 user manual Phase 2 settings, Virtual Private Networking