Instruction manual

NetVanta 2000 Series System Manual Section 4, User Interface Guide
61200361L1-1E © 2002 ADTRAN, Inc. 69
menu indicates the complete port range i.e. 1 to 65535.
P
ROTOCOL
- Drop down menu allows you to choose the transport protocol for this VPN policy selector.
ALL option in this menu represents all transport protocols riding on IP.
P
EER
S
ECURITY
G
ATEWAY
- is the IP address of the remote end of the VPN tunnel, i.e. WAN IP address of
the remote Security Gateway.
L
OCAL
S
ECURITY
G
ATEWAY
- is the IP address of the local end of the VPN tunnel, i.e. WAN interface IP
address of your ADVANTA 2100.
AH Configuration
A
UTHENTICATION
- this menu allows you to enable or disable AH transform for this VPN policy.
A
UTH
ALGORITHM
- If you choose to enable AH, then this menu allows you to select authentication
algorithm. You can choose MD5 or SHA1; default is MD5.
ESP Configuration
E
NCRYPTION
- drop down menu allows you to enable or disable ESP transform for this VPN policy. You
can select the ESP mode also with this menu. Two ESP modes are available, one is plain ESP and other is
ESP with Authentication.
ESP A
LGORITHM
- allows you to choose the encryption algorithm for this VPN policy. Two options are
available - one is DES other is 3DES; DES is the default value.
A
UTH
A
LGORITHM
- allows you to configure authentication algorithm if you enable ESP with
Authentication mode. You can choose one from MD5 or SHA1. MD5 is the default value.
> POLICIES > VPN > IKE POLICIES
To add an IKE policy, click the A
DD
button to display the IKE Policy Configuration page. A description of
the IKE configuration parameters follows.
P
OLICY
N
AME
- is a symbolic name of the VPN policy. Each policy should have an unique policy name.
D
IRECTION
-- You may specify any of the available options in the drop down menu. It includes Both
directions, Initiator only, Responder only. Choosing Both directions will allow the box to act both as
initiator and responder.
E
XCHANGE
T
YPE
- You may select any one of the options available in the drop down menu. It includes Main
Mode and Aggressive Mode.
Currently only
B
OTH
D
IRECTIONS
is supported