User guide

Using a DVCP server to manage your VPN tunnels
User Guide 97
Using a DVCP server to manage your VPN tunnels
Dynamic VPN Configuration Protocol (DVCP) is the WatchGuard-
proprietary protocol that easily creates IPSec tunnels. With managed
VPN tunnels, all information for the tunnel settings is stored on the
DVCP server. This reduces the load on the administrator because he
or she does not need to manually set up tunnels.
You can only use a Firebox III or Firebox X model as a DVCP server.
Your Firebox X Edge can be a DVCP client to let you easily manage
its VPN tunnels. There are two kinds of DVCP server:
Basic DVCP - All Firebox III and Firebox X models
VPN Manager - Firebox III 1000 or above, Firebox X700 or
above
For more information, see the FAQ:
https://www.watchguard.com/support/advancedFAQs/
basicdvcp_whatis.asp
Item Description Assigned
By
Encryption
Method
DES uses 56-bit encryption. 3DES uses 168-bit
encryption. The 3DES encryption method gives
better security, but decreases the speed of
communication. The two IPSec-compatible
appliances must use the same encryption
method.
You
Site A: 3DES
Site B: 3DES
Authentication The two IPSec-compatible appliances must use
the same authentication method.
You
Site A: MD5 (or SHA1)
Site B: MD5 (or SHA1)