Virtual Private Network > Connections
Virtual Private Network
216
RM GUI HiSecOS EAGLE20/30
Release
3.0
09/2015
Authentication
Type
Specifies the type of authentication that the device uses.
Possible values:
psk
(default setting)
Select this value for the device to use a key that was previously created
and saved on both the remote and local devices.
individualx509
Select this value for the device to use an X509 certificate.
Use a separate certificate for CA and local identification.
pkcs12
Select this value for the device to use a PKCS12 container with the
needed certificates, which also includes the CA.
Pre-Shared Key Specifies the pre-shared key.
The device also allows you to create pre-shared secrets as hexadecimal or
Base64 encoded binary values. The device interprets a character sequence
beginning with
0x
as sequence with hexadecimal digits. Similarly, the
device also interprets a character sequence beginning with multiple
0
s as
Base64 encoded binary data.
The prerequisite for using this parameter is that you set the "Authentication
Type" to
psk
.
Possible values:
alphanumeric ASCII character string with 0..128 characters, excluding
the new line and double-quote characters.
IKE Auth. Cert. CA Specifies the Certificate Authority certificate file names. The device uses
this certificate for signature verification of the local and remote certificates.
The prerequisite for using this parameter is that you set the "Authentication
Type" to
individualx509
.
Possible values:
alphanumeric ASCII character string with 0..128 characters.
IKE Auth. Cert.
Local
Specifies the file name of the certificate the local device uses. The device
uses this certificate for authentication of the local peer on the remote side.
If you set the "Authentication Type" to
individualx509
, then the certificate
binds the identity of local peer to the specified public key, that the
certification authority (CA) signed in "IKE Auth. Cert. CA"
If you set the "Authentication Type" to
pkcs12
, then the certificate uploaded
in the pkcs bundle binds the identity of local peer to the specified public key,
independent of the certificate displayed in the "IKE Auth. Cert. CA" field.
Possible values:
alphanumeric ASCII character string with 0..128 characters.
Parameters Meaning