Quick Reference Guide
Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
7-30 Virtual Private Networking
May 2004, 202-10031-01
f.
You will now see the “FVS328” entry in the Active Self Certificates table and the pending
“FVS328” Self Certificate Request is gone, as illustrated below.
Figure 7-20: Self Certificates table
7. Associate the new certificate and the Trusted Root CA certificate on the FVS328.
a. Create a new IKE policy called Scenario_2 with all the same properties of Scenario_1
(see “Scenario 1 IKE Policy” on page 7-22) except now use the RSA Signature instead of
the shared key.
Figure 7-21: IKE policy using RSA Signature
b.
Create a new VPN Auto Policy called scenario2a with all the same properties as
scenario1a except that it uses the IKE policy called Scenario_2.










