Users Guide

Table Of Contents
Policy
Name
Policy
Number
IKE
Version
Encryption
Algorithm
Hash
Algorithm
Authen-
tication
Method
PRF
Method
Diffie-
Hellman
Group
Default
Suite-B 256
bit ECDSA
protection
suite
10009 IKEv2 AES -256 SHA 384-
192
ECDSA-
384
Signature
hmac-
sha2-
384
Random
ECP
Group
(384 bit)
Default
Suite-B
128bit IKEv1
ECDSA
protection
suite
10010 IKEv1 AES-GCM-
128
SHA 256-
128
ECDSA-
256
Signature
hmac-
sha2-
256
Random
ECP
Group
(256 bit)
Default
Suite-B
256-bit
IKEv1
ECDSA
protection
suite
10011 IKEv1 AES-GCM-
256
SHA 256-
128
ECDSA-
256
Signature
hmac-
sha2-
256
Random
ECP
Group
(256 bit)
Working with VPN Dialer
For Windows clients, a dialer can be downloaded from the controller to auto-configure tunnel settings on the
client.
Configuring VPN Dialer
Use the following procedures to configure the VPN dialer via the WebUI or CLI:
In the WebUI
1. Navigate to the Configuration > Advanced Services > VPN Services > Dialers page. Click Add to add a
new dialer or the Edit tab to edit an existing dialer.
2. Enter the Dialer Name that identifies this setting.
3. Configure the dialer to work with PPTP or L2TP by selecting Enable PPTP or Enable L2TP.
4. Select the authentication protocol. This should match the L2TP or PPTP authentication type configured for
the VPN in the Configuration > Advanced Services > VPN Services > IPSEC window.
5. (Optional) Select Send Direct Network Traffic In Clear to enable ā€œsplit tunnelingā€ functionality so that
traffic destined for the internal network is tunneled, while traffic for the Internet is not.
This option is not recommended for security reasons.
6. (Optional) Select Disable Wireless Devices When Client is Wired to allow the dialer to shut-down the
wireless interface when it detects that a wired network connection is in use.
7. (Optional) Select Enable SecurID New and Next Pin Mode to enable site-to-site VPN support for SecurID
new and next pin modes.
8. For L2TP:
n Set the IKE Hash Algorithm to the value defined in the IKE policy on the Advanced Services > VPN
Services > IPSEC window.
Dell Networking W-Series ArubaOS 6.5.x | User Guide Virtual Private Networks | 368