Refer
e
nc
e M
anu
al
for
the
Pr
oSafe
802.11
g
Wire
less
VPN Fir
e
wal
l FVG318
7-
8
A
dva
n
ced Vir
tu
a
l Private Networkin
g
BE
TA
Tr
a
ffic Selecto
r
These
se
tting
s de
te
rmi
ne
if a
nd
whe
n
a
VPN tunn
el will
b
e est
a
blish
ed.
If
network traf
fic
m
e
et
s
al
l
cri
te
ria
, then
a
VPN
tunne
l will
be
crea
te
d.
Loca
l IP
T
he
drop-d
own men
u al
lows yo
u to
config
ure the so
urce IP add
ress of th
e
o
utboun
d network tra
ffic for
w
hich this VPN
p
olicy will
p
rovide
secu
rity
.
U
su
all
y,
this ad
dress is from your n
etwork add
ress sp
ace. Th
e cho
ices are:
•
A
NY for
a
ll vali
d IP add
re
sses
in
th
e
Interne
t ad
dress sp
ace
•
S
ingle
IP
Ad
dress
•
R
ange
o
f IP Add
re
sses
•
S
u
bnet Address
Remote
IP
T
he d
rop-do
wn menu
a
llo
ws
yo
u to
configu
re
th
e destina
tion IP addre
ss o
f
the
o
utboun
d network traf
fic
for whi
ch th
is VPN
p
olicy wil
l provid
e security
.
U
su
all
y,
th
is
a
ddress is from the re
mote si
te
's corpora
te
ne
tw
ork
a
ddress
sp
a
ce. T
he
choi
ces a
re:
•
A
NY for
a
ll vali
d IP add
re
sses
in
th
e
Interne
t ad
dress sp
ace
•
S
ingle
IP
Ad
dress
•
R
ange
o
f IP Add
re
sses
•
S
u
bnet Address
Authenticating
H
ead
er
(A
H)
Co
nfig
ura
tio
n
AH spe
ci
fie
s
the
a
uthenticatio
n protocol for the
VPN he
ader
. T
hese
se
tting
s
must
ma
tch t
he remot
e VPN
e
nd
po
int
.
Enab
le Authentica
tio
n
U
se
thi
s che
ck bo
x to ena
ble or disa
ble AH fo
r
this VPN poli
cy
.
Authen
tica
tio
n
Algori
th
m
If yo
u e
nab
le
AH,
then
sel
ect the
au
th
entication
a
lgori
th
m
:
•
M
D5
— th
e defaul
t
•
S
HA1
— more secure
Enc
ap
su
lated
Sec
u
rity
Payload (ESP)
Configuration
ESP provides secur
ity for the p
ayload
(dat
a) sent through the VPN tunnel.
Gen
erally
, you
wil
l wa
nt to
en
able
bo
th
Encryption
and
Authen
tica
tion. T
w
o
ESP modes are ava
ilab
le:
•
P
lain ESP
encryption
•
ESP
encryptio
n w
ith
a
uthentica
tio
n
T
hese
se
tting
s must match
the
remote
VPN
e
nd
po
int.
Enable Encryption
Us
e
this
chec
k box
to enable or
disable ESP
Encr
yption.
Encryption
Algorithm
If you enable
ESP encry
p
tion,
then select the
encryption algorithm:
•
D
E
S
— th
e de
fa
ul
t
•
3
DES
— more secure
Enab
le
Authentica
tio
n
U
se
this ch
eck box
to
ena
bl
e
or di
sable
ESP tra
nsform
fo
r th
is VPN p
olicy
.
Y
ou can sele
ct th
e ESP mode
a
lso with th
is
men
u.
T
w
o
ESP modes are available:
•
P
lain ESP
•
ESP with authentication
Ta
ble 7-
1.
VPN
–
Aut
o
Polic
y
Co
nfigu
rat
io
n Fie
ld
s
Field D
escr
ip
tio
n