Symantec 360R Administration Guide - Page 92

Configuration tasks for dynamic Gateway-to-Gateway, tunnels, Enable VPN Tunnel

Page 92 highlights

92 Establishing secure VPN connections Configuring Gateway-to-Gateway tunnels succeed. If the key matches, then Security Parameter Index (SPI), authentication, and encryption keys are automatically generated and the tunnel is created. The security gateway usually re-keys (generates a new key) automatically at set intervals to ensure the continued integrity of the key. Configuration tasks for dynamic Gateway-to-Gateway tunnels Table 6-4 summarizes the tasks that are required to configure dynamic Gateway-to-Gateway VPN tunnels. Note: Complete each step in Table 6-4 twice: first for the local security gateway and then for the remote security gateway. Table 6-4 Dynamic Gateway-to-Gateway configuration tasks Task Configure a VPN Policy (Phase 2 IKE negotiation). (Optional) Create a dynamic tunnel. Define IPsec Security Association Parameters. Select VPN Policy. Define the local security gateway. Define the remote security gateway. Repeat the above steps for the remote security gateway. SGMI VPN > VPN Policies VPN > Dynamic Tunnels VPN > Dynamic Tunnels > IPsec Security Association VPN > Dynamic Tunnels > Local Security Gateway VPN > Dynamic Tunnels > Remote Security Gateway To add a dynamic Gateway-to-Gateway tunnel See "Dynamic Tunnels tab field descriptions" on page 189. 1 In the left pane, click VPN. 2 On the Dynamic Tunnels tab, in the Name text box, type a name for the new tunnel. 3 To edit an existing tunnel, from the VPN Tunnel drop-down list, select a VPN tunnel. 4 Check Enable VPN Tunnel.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218

92
Establishing secure VPN connections
Configuring Gateway-to-Gateway tunnels
succeed. If the key matches, then Security Parameter Index (SPI),
authentication, and encryption keys are automatically generated and the tunnel
is created. The security gateway usually re-keys (generates a new key)
automatically at set intervals to ensure the continued integrity of the key.
Configuration tasks for dynamic Gateway-to-Gateway
tunnels
Table 6-4
summarizes the tasks that are required to configure dynamic
Gateway-to-Gateway VPN tunnels.
Note:
Complete each step in
Table 6-4
twice: first for the local security gateway
and then for the remote security gateway.
To add a dynamic Gateway-to-Gateway tunnel
See
“Dynamic Tunnels tab field descriptions”
on page 189.
1
In the left pane, click
VPN
.
2
On the Dynamic Tunnels tab, in the Name text box, type a name for the new
tunnel.
3
To edit an existing tunnel, from the VPN Tunnel drop-down list, select a
VPN tunnel.
4
Check
Enable VPN Tunnel
.
Table 6-4
Dynamic Gateway-to-Gateway configuration tasks
Task
SGMI
Configure a VPN Policy (Phase 2 IKE
negotiation).
(Optional)
VPN > VPN Policies
Create a dynamic tunnel.
VPN > Dynamic Tunnels
Define IPsec Security Association Parameters.
Select VPN Policy.
VPN > Dynamic Tunnels > IPsec
Security Association
Define the local security gateway.
VPN > Dynamic Tunnels > Local
Security Gateway
Define the remote security gateway.
VPN > Dynamic Tunnels > Remote
Security Gateway
Repeat the above steps for the remote security
gateway.