VPN
Manual key
FortiGate-1000A/FA2 Administration Guide
01-28011-0254-20051115
271
2
Follow the guidelines in these sections:
•
“Manual key list” on page 271
•
“Manual key options” on page 271
Manual key list
Figure 133:IPSec VPN Manual Key list
Manual key options
Create New
Select Create New to create a new manual key configuration.
Remote Gateway
The IP address of the remote peer or client.
Encryption
Algorithm
The names of the encryption algorithms used in the configuration.
Authentication
Algorithm
The names of the authentication algorithms used in the configuration.
Delete and Edit
icons
Delete or edit a manual key configuration.
VPN Tunnel Name
Type a name for the VPN tunnel.
Local SPI
Type a hexadecimal number (up to 8 characters, 0-9, a-f) that represents
the SA that handles outbound traffic on the local FortiGate unit. The valid
range is from
0xbb8
to
0xffffffff
. This value must match the Remote
SPI value in the manual key configuration at the remote peer.
Remote SPI
Type a hexadecimal number (up to 8 characters, 0-9, a-f) that represents
the SA that handles inbound traffic on the local FortiGate unit. The valid
range is from
0xbb8
to
0xffffffff
. This value must match the Local
SPI value in the manual key configuration at the remote peer.
Remote Gateway
Type the IP address of the public interface to the remote peer. The
address identifies the recipient of ESP datagrams.
Encryption
Algorithm
Select one of the following symmetric-key encryption algorithms:
•
DES-Digital Encryption Standard, a 64-bit block algorithm that uses a
56-bit key.
•
3DES-Triple-DES, in which plain text is encrypted three times by three
keys.
•
AES128-A 128-bit block algorithm that uses a 128-bit key.
•
AES192-A 128-bit block algorithm that uses a 192-bit key.
•
AES256-A 128-bit block algorithm that uses a 256-bit key.
Summary of Contents for FortiGate 1000A
Page 80: ...80 01 28011 0254 20051115 Fortinet Inc FortiGate IPv6 support System Network ...
Page 88: ...88 01 28011 0254 20051115 Fortinet Inc Dynamic IP System DHCP ...
Page 122: ...122 01 28011 0254 20051115 Fortinet Inc FortiManager System Config ...
Page 248: ...248 01 28011 0254 20051115 Fortinet Inc Protection profile Firewall ...
Page 260: ...260 01 28011 0254 20051115 Fortinet Inc CLI configuration User ...
Page 380: ...380 01 28011 0254 20051115 Fortinet Inc CLI configuration Log Report ...
Page 392: ...392 01 28011 0254 20051115 Fortinet Inc Glossary ...