Quick Reference Guide
ProSafe VPN Firewall 200 FVX538 Reference Manual
Virtual Private Networking 5-33
v1.0, January 2010
IP address from the configured IP address pool and activates a temporary IPsec policy, using the
information that is specified in the Traffic Tunnel Security Level section of the Mode Config
record (on the Add Mode Config Record screen that is shown in Figure 5-32 on page 5-34).
Configuring Mode Config Operation on the VPN Firewall
You need to configure two screens: the ModeConfig screen and the IKE Policies screen.
Configuring the Mode Config Screen
To configure the Mode Config screen:
1. From the main menu, select VPN, and then select Mode Config from the submenu. The Mode
Config screen will display.
Note: After configuring a Mode Config record, you must manually configure an IKE
policy and select the newly-created Mode Config record from the Select Mode
Config Record pull-down menu (see “Configuring Mode Config Operation on the
VPN Firewall.” You do not need to make changes to any VPN policy.
Note: An IP address that is allocated to a VPN client is released only after the VPN client
has gracefully disconnected or after the SA lifetime for the connection has timed
out.
Figure 5-31