Set Up Virtual Private Networking With IPSec Connections 
375
 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv3
Identifier Type From the menu, select an ISAKMP identifier to be used by the VPN firewall and 
specify the identifier in the Identifier field:
•  Local Wan IP. The WAN IP address of the VPN firewall. When you select this 
option, the Identifier field automatically shows the IP address of the selected 
WAN interface.
•  FQDN. The Internet address for the VPN firewall.
•  User FQDN. The email address for a local VPN client or the VPN firewall.
•  DER ASN1 DN. A distinguished name (DN) that identifies the VPN firewall in 
the DER encoding and ASN.1 format.
Identifier Depending on the selection from the Identifier Type menu, enter the IP address, 
email address, FQDN, or distinguished name.
Remote
Identifier Type From the menu, select an ISAKMP identifier to be used by the remote endpoint 
and specify the identifier in the Identifier field:
•  Remote Wan IP. The WAN IP address of the remote endpoint. When you 
select this option, the Identifier field automatically shows the IP address of 
the selected WAN interface.
•  FQDN. The FQDN for a remote gateway.
•  User FQDN. The email address for a remote VPN client or gateway.
•  DER ASN1 DN. A distinguished name (DN) that identifies the remote 
endpoint in the DER encoding and ASN.1 format.
Identifier Depending on the selection of the Identifier Type menu, enter the IP address, 
email address, FQDN, or distinguished name.
IKE SA Parameters
Encryption Algorithm From the menu, select an algorithm to negotiate the security association (SA):
•  DES. Data Encryption Standard (DES).
•  3DES. Triple DES. This is the default algorithm.
•  AES-128. Advanced Encryption Standard (AES) with a 128-bit key size.
•  AES-192. AES with a 192-bit key size.
•  AES-256. AES with a 256-bit key size.
Authentication 
Algorithm
From the menu, select an algorithm to use in the VPN header for the 
authentication process:
•  SHA-1. Hash algorithm that produces a 160-bit digest. This is the default 
setting.
•  MD5. Hash algorithm that produces a 128-bit digest.
Authentication Method Select the authentication method:
•  Pre-shared key. A secret that is shared between the VPN firewall and the 
remote endpoint.
•  RSA-Signature. Uses the active self-signed certificate that you must have 
uploaded (see 
Manage VPN Self-Signed Certificates on page  520). When you 
select RSA-Signature, the Pre-shared key field is masked out.
Pre-shared key A key with a minimum length of 8 characters and no more than 49 characters. Do 
not use a double quote (''), single quote ('), or space in the key.
Setting Description