Specifications
VPN Configuration 507
Chapter 23
z Secondary WINS
Server
Specify the IP address of the Secondary
WINS server in the text box.
z Address Pools IPSec tunnel endpoints are assigned
discrete IP addresses. The client is
assigned an address from one of the pools
specified in this option. The IP address at
the switch endpoint will always be either
one of the IP address on the switch or the
Emulate Server IP address.
z Enable Source NAT Enable or disable NAT (Network Address
Translation). When selected, a traffic
policy is created for the VPN default role.
Source NAT may be enabled when the
address range in the VPN address pool is
not routable by the remainder of the
network.
When Source NAT is enabled the source
address of packets from the client will be
changed to that of the switch as they pass
outbound from the switch to the server.
z IKE Aggressive Group
Name
(Only required for third party VPNs)
Enter the name of the IKE Aggressive
Group when XAUTH is used.
The group name must exactly match the
group name configured on each client.
z IKE Shared Secrets Specify the IKE pre-shared keys for various
IP address ranges.
Keys may be from 1 to 64 characters in
length.
z IKE Policies Define IKE policies in this section of the
page.