6: Network Settings
PremierWave® XN Intelligent Gateway User Guide 69
To Configure VPN Settings
Using Web Manager
To view or configure VPN information, click VPN in the menu.
Using the CLI
To enter the VPN command level: enable -> config -> vpn
Using XML
Include in your file: <configgroup name = "vpn">
NAT Traversal Select to enable or disable NAT Traversal. If there is an external NAT
device between VPN tunnels, the user must enable NAT Traversal.
Encryption Select the encryption algorithm in key exchange.
Authentication Select the hash algorithm in key exchange.
DH Group Select the Diffie-Hellman group (the Key Exchange group between the
Remote and VPN Gateways).
IKE Lifetime Enter the lifetime, in hours, for IKE SA.
ISAKMP PHASE 2 (ESP)
Encryption Select the encryption Algorithm in data exchange.
Authentication Select the hash Algorithm in data exchange.
DH Group Select the Diffie-Hellman groups (the Key Exchange group between the
Remote and VPN Gateways) for Phase 2.
SA Lifetime Enter the lifetime, in hours, for SA in Phase 2.
Unreachable Host Detection
Host Enter the Host to use failover host and ping interval to monitor connectivity
with a host on the remote network.
Ping Interval Indicate the ping interval, in minutes, to use failover host and ping interval to
monitor connectivity with a host on the remote network.
Max Tries Enter the tries for the VPN tunnel is restarted if Max Tries pings to the host
fail.
VPN Settings Description