Table of Contents

 

18.4

Secure Gateway Address ................................................................................................

276

 

 

18.4.1 Dynamic Secure Gateway Address .......................................................................

277

 

18.5

VPN Setup Screen ..........................................................................................................

277

 

18.6

Keep Alive .......................................................................................................................

279

 

18.7

VPN, NAT, and NAT Traversal .........................................................................................

279

 

18.8

Remote DNS Server ........................................................................................................

280

 

18.9

ID Type and Content ........................................................................................................

281

 

 

18.9.1 ID Type and Content Examples .............................................................................

282

 

18.10

Pre-Shared Key .............................................................................................................

283

 

 

18.11 Editing VPN Policies .....................................................................................................

283

 

18.12

IKE Phases ...................................................................................................................

288

 

 

18.12.1 Negotiation Mode .................................................................................................

289

 

 

18.12.2 Diffie-Hellman (DH) Key Groups ..........................................................................

289

 

 

18.12.3 Perfect Forward Secrecy (PFS) ..........................................................................

289

 

18.13

Configuring Advanced IKE Settings .............................................................................

289

 

18.14

Manual Key Setup .........................................................................................................

292

 

 

18.14.1 Security Parameter Index (SPI) ..........................................................................

292

 

18.15

Configuring Manual Key ...............................................................................................

292

 

18.16

Viewing SA Monitor ......................................................................................................

295

 

18.17

Configuring Global Setting ............................................................................................

297

 

18.18

Telecommuter VPN/IPSec Examples ............................................................................

297

 

 

18.18.1 Telecommuters Sharing One VPN Rule Example ................................................

297

 

 

18.18.2 Telecommuters Using Unique VPN Rules Example .............................................

298

 

 

18.19 VPN and Remote Management .....................................................................................

300

 

Chapter 19

 

 

 

 

Certificates

............................................................................................................................

301

 

19.1

 

Certificates Overview ......................................................................................................

301

 

 

19.1.1 Advantages of Certificates .....................................................................................

302

 

19.2

Self-signed Certificates ....................................................................................................

302

 

19.3

Configuration Summary ...................................................................................................

302

 

19.4

My Certificates .................................................................................................................

303

 

19.5

My Certificate Import ......................................................................................................

304

 

 

19.5.1 Certificate File Formats ..........................................................................................

305

 

19.6

My Certificate Create ......................................................................................................

306

 

19.7

My Certificate Details ......................................................................................................

308

 

19.8

Trusted CAs ....................................................................................................................

311

 

19.9

Trusted CA Import .........................................................................................................

313

 

19.10

Trusted CA Details .........................................................................................................

314

 

 

19.11 Trusted Remote Hosts .................................................................................................

316

 

19.12

Verifying a Trusted Remote Host’s Certificate ...............................................................

318

 

 

19.12.1 Trusted Remote Host Certificate Fingerprints ......................................................

318

 

19.13

Trusted Remote Hosts Import ......................................................................................

319

 

 

 

 

 

 

 

 

 

19

P-2602HWLNI User’s Guide