Robustel GoRugged R3000-3P User Guide
41
Click Add to add new IPSec Tunnel
Enable IPSec Tunnel, the max tunnel account is 3
Enter the address of remote side IPSec VPN server.
Select from “Tunnel” and “Transport”.
Tunnel: Commonly used between gateways, or at an end-station to a
gateway, the gateway acting as a proxy for the hosts behind it.
Transport: Used between end-stations or between an end-station and a
gateway, if the gateway is being treated as a host—for example, an
encrypted Telnet session from a workstation to a router, in which the
router is the actual destination.
Select the security protocols from “ESP” and “AH”.
ESP: Uses the ESP protocol.
AH: Uses the AH protocol.
Enter IPSec Local Protected subnet’s address.
Enter IPSec Local Protected subnet’s mask.
Select from “IP Address”, “FQDN” and “User FQDN” for IKE negotiation.
“Default” stands for “IP Address”.
IP Address: Uses an IP address as the ID in IKE negotiation.
FQDN: Uses an FQDN type as the ID in IKE negotiation. If this option is
selected, type a name without any at sign (@) for the local security
gateway, e.g., test.robustel.com.
User FQDN: Uses a user FQDN type as the ID in IKE negotiation. If this
option is selected, type a name string with an sign “@” for the local
security gateway, e.g., test@robustel.com.
Enter IPSec Remote Protected subnet’s address.
Enter IPSec Remote Protected subnet’s mask.
Select from “IP Address”, “FQDN” and “User FQDN” for IKE negotiation.
IP Address: Uses an IP address as the ID in IKE negotiation.
FQDN: Uses an FQDN type as the ID in IKE negotiation. If this option is
selected, type a name without any at sign (@) for the local security
gateway, e.g., test.robustel.com.
User FQDN: Uses a user FQDN type as the ID in IKE negotiation. If this
option is selected, type a name string with a sign “@” for the local
security gateway, e.g., test@robustel.com.
Select from “Main” and “aggressive” for the IKE negotiation mode in
phase 1. If the IP address of one end of an IPSec tunnel is obtained