DPX8000 Series Deep Service Switching Gateway User
Configuration Guide Firewall Service Board Module v1.0
29
Figure3-1
IPsec VPN configuration
Table3-1 describes the configuration items of the IPsec VPN.
Table3-1
IPsec VPN configuration
Item
Description
Connection name
Displays the name of IPsec configuration policy, which is configured by user.
Status settings
Displays enable/disable status of IPsec policy.
Local IP address
Displays the local address IP address in IPsec configuration policy.
Local device ID
It provides four types of ID obtaining method in which you can select one:
Auto, hostname, IP address, Local certificate ID alias:
Displays auto
Client ID
In client ID item, you can enable auto or remote certificate ID alias option.
Subnets available to the clients
Allows you to configure one subnet for the client.
Authentication method
It delivers two types of authentication method, including pre-shared key and digital
certificate.
Advanced configuration
The advanced configuration provides you with the negotiation mode, IPsec security
protocol type, ESP AH Enable PFS group, IKE security proposal, and IPsec security
proposal.
Operation
Click the
copy icon and the
delete icon to do the operations.
To create IPsec VPN rule in gateway-gateway mode: