Specifications

UTT Technologies Chapter 12 VPN
http://www.uttglobal.com Page 244
Now we want to use AutoKey (IKE) mode to establish an IPSec tunnel between them,
and use the following proposals (i.e., encryption and authentication algorithms): the phase
1 proposals are left at their default values, and the preferred phase 2 proposal is
esp-aes192-sha; in addition, the preshared key is testing, the originator’s ID type is Email
address and value is hiper@utt.com.cn, and the IP addresses are as follows:
The UTT VPN gateway
at the head office:
WAN Interface IP Address: 200.200.202.123/24
LAN Interface IP Address: 192.168.123.1/24
The UTT VPN gateway at the branch office:
WAN Interface IP Address: Dynamic (DHCP)
LAN Interface IP Address: 192.168.16.1/24
1. Configuring the UTT VPN gateway at the head office
Go to the VPN > IPSec > IPSec Settings page, make the following settings (leave the
default values for the other parameters), and then click the Save button.
Key Mode
AutoKey (IKE)
Connection Type
Answer-Only
Gateway IP/Domain Name
(Remote)
0.0.0.0
Subnet IP (Remote)
192.168.16.1
Subnet Mask (Remote)
255.255.255.0
ID Type (Remote)
Email Address
ID Value (Remote)
hiper@utt.com.cn
Bind to (Local)
WAN1
Subnet IP (Local)
192.168.123.1
Subnet Mask (Local)
255.255.255.0
Preshared Key
testing
P2 Encrypt/Auth Algorithms 1
esp-aes192-sha
Advanced Options
Exchange Mode
Aggressive
2. Configuring the UTT VPN gateway at the branch office