Page 206 SonicWALL Internet Security Appliance Administrator’s Guide
IKE and Manual Key Configuration for Two SonicWALLs
VPN between two SonicWALLs allows users to securely access files and applications at remote
locations. The first st ep to s et u p a V PN bet ween t wo Son ic WALLs i s cr eati ng corre spo nd ing Security
Associations (SAs). The instructions below descr ibe how to create an SA using Manual Keying and
Internet Key Exchange (IKE). These instructions are foll owed by an ex ample il lustr ating a VPN tu nnel
between two SonicWALLs. Either Manual Key or IKE using Preshared Secret can be used to
configure a VPN tunnel between two SonicWALLs.
Manual Key for Two SonicWALLs
Click VPN on the left side of the SonicWALL browser window, and then click the Configure tab.
1. Select Manual Key from the IPSec Keyi ng Mo de m enu.
2. Select -Add New SA- from the Security Association menu.
3. Enter a descr iptive na me for the Security Assoc iation, such as "Chi cago Office" or " Remote
Management", in the Name field.
4. Enter the IP address of the remote VPN gateway in the IPSec Gateway Address fi eld. This must
be a valid IP address and is t he remote VPN gateway NAT Public Address i f NAT is enabled. Enter
"0.0.0.0" if the remote VPN ga t eway has a dynamic IP address.
5. Define an SPI (Security Parameter Index) that the remote SonicWALL uses to identify the
Security Associ ation in the Incoming SPI field.