Asentria SiteBoss 530 User Manual
26
VPN1 / VPN2
SiteBoss 530 - VPN 1 Settings
A) Description []
B) Start Mode [MANUAL]
C) Public Interface [ANY]
D) Remote Address []
E) Remote Network [0.0.0.0/0]
F) IPsec Remote Authentication Key []
G) IPsec Key Lifetime (seconds) [3600]
H) Private Network [0.0.0.0/0]
I) SSL Protocol [UDP]
J) SSL Port [1194]
K) SSL Username []
L) SSL Password [********]
M) SSL Manual Configuration
Description
sets identifying data concerning the VPN.
Start Mode
toggles between MANUAL, AUTO-PASSIVE and AUTO-ACTIVE.
•
MANUAL means either the user starts the VPN, or in the case of VPN on-demand with SitePath, when
conditions arise that require a VPN to be up (See
documentation for more details).
•
AUTO-PASSIVE means that for a VPN in IPsec or
mode, the units listens for a VPN
connection when the unit starts.
•
AUTO-ACTIVE means that for a VPN in IPsec or
mode, the unit starts connecting to a VPN
peer when the unit starts. When a VPN is started, it is in that starting mode until it is stopped. It can be
stopped any any time, regardless of start mode, by a user (via the
net.vpn.cmd
key), or by conditions
warranting the VPN to be down in VPN on-demand with SitePath.
Public Interface
toggles between ANY, ETH1, ETH2, PPPP, WPPP, and DSL to set on what interface the VPN to
SitePath rides.
•
ETH1: Ethernet1
•
ETH2: Ethernet2
•
PPPP: POTS modem PPP (if PPP is down, unit will raise PPP to raise the VPN, so long as PPP dialout is
configured)
•
WPPP: Wireless modem PPP (if PPP is down, unit will wait until a connection be established, so long as
Wireless modem is enabled)
•
DSL: ADSL modem (if ADSL link is down, unit will raise ADSL to raise the VPN, so long as it is configured)
This setting must make sense with the default router and the network configuration. This means:
•
If SitePath is off a local network, then the default router must be on the same interface as the VPN network
interface
•
If SitePath is on a local network, then the VPN network interface must be for the network on which SitePath
lies, and the default router is don't-care
Remote Address
sets the the public IP address of the appropriate VPNG used in a VPN.
Remote Network
sets the remote network for the VPN in network notation: the public IP of the appropriate VPNG
suffixed with "/32" to specify that the VPN-tunneled network only goes to the VPNG.
IPsec Remote Authentication Key
sets the authentication key required.
IPsec Key Lifetime (seconds)
sets the amount of time in seconds (1200 – 86400) that will pass before automatic key
regeneration occurs. Default setting is 3600 seconds.
Private Network
sets the reserved subnet that the Element Management System (EMS) calculated for this unit.
SSL Protocol
toggles between UDP and TCP to set the protocol SSL VPN uses to carry VPN traffic. Default setting
is UDP.
Summary of Contents for SiteBoss 530
Page 6: ......