Dell PowerConnect W-Airwave W-Airwave 7.2 Configuration Guide - Page 156

Advanced Services > VPN Services > IPSEC > Dynamic Map, General Settings, Other Settings, Dynamic Maps

Page 156 highlights

Navigate to Advanced Services > VPN Services > IPSEC from the Dell PowerConnect W Configuration navigation pane. This page displays the IPSEC profile name, the VPN services that use the IPSEC profile, and the folder associated with the IPSEC Profile. Select Add to create a new IPSEC profile, or click the pencil icon next to an existing profile to modify settings. The Add/Edit Details page contains the following fields, as described in Table 81: Table 81 Advanced Services > VPN Services > IPSEC Add/Edit Field Descriptions Field Default Description General Settings Folder Name Top Blank Set the folder with which the IPSEC profile is associated. The drop-down menu displays all folders available for association with the IPSEC profile. Enter the name of the IPSEC profile. Other Settings Maximum MTU Size 1500 (1034-1500 bytes) Define the Maximum transmission unit (MTU) size in bytes. Dynamic Maps Dynamic Maps Select one or more dynamic maps that the IPSEC profile is to reference. You can add or edit dynamic maps as required. For additional information, refer to "Advanced Services > VPN Services > IPSEC > Dynamic Map" on page 156. Select Add to complete the creation of the IPSEC profile, or click Save to retain the changes to the IPSEC profile. This profile appears on the Advanced Services > VPN Services > IPSEC page. Advanced Services > VPN Services > IPSEC > Dynamic Map VPN Services may reference IPSEC profiles. IPSEC profiles reference Dynamic Maps, and Dynamic Maps reference Transform Sets. This interrelationship is conveyed in the navigation pane of Device Setup > Dell PowerConnect W Configuration. Dynamic maps establish policy templates that are used during negotiation requests in IPSEC. This occurs during security associations from a remote IPSEC peer in the VPN, even when all cryptographic map parameters are not known during new security associations from a remote IPSEC peer. For instance, if you do not know about all the IPSec remote peers in your network, a Dynamic Map allows you to accept requests for new security associations from previously unknown peers. Note that these requests are not processed until the IKE authentication has completed successfully. In short, a Dynamic Map is a policy template used by IPSEC profiles. Dynamic Maps are not used for initiating IPSEC security associations, but for determining whether or not traffic should be protected in the VPN. To view Dynamic Maps that are currently configured, navigate to Advanced Services > VPN Services > IPSEC > Dynamic Map. This page lists dynamic map names, IPSEC profiles that reference them, and the folder. Select Add to create a new Dynamic Map, or click the pencil icon next to an existing map to modify settings. The Add/Edit Details page contains the fields as described in Table 82: 156 | Dell PowerConnect W Configuration Reference Dell PowerConnect W AirWave 7.2 | Configuration Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160

156
|
Dell PowerConnect W Configuration Reference
Dell PowerConnect W AirWave 7.2
| Configuration Guide
Navigate to
Advanced Services > VPN Services > IPSEC
from the
Dell PowerConnect W Configuration
navigation pane. This page displays the IPSEC profile name, the VPN services that use the IPSEC profile, and the
folder associated with the IPSEC Profile.
Select
Add
to create a new
IPSEC
profile, or click the pencil icon next to an existing profile to modify settings.
The
Add/Edit Details
page contains the following fields, as described in
Table 81
:
Select
Add
to complete the creation of the IPSEC profile, or click
Save
to retain the changes to the IPSEC
profile. This profile appears on the
Advanced Services > VPN Services > IPSEC
page.
Advanced Services > VPN Services > IPSEC > Dynamic Map
VPN Services may reference IPSEC profiles. IPSEC profiles reference Dynamic Maps, and Dynamic Maps
reference Transform Sets. This interrelationship is conveyed in the navigation pane of
Device Setup > Dell
PowerConnect W Configuration
.
Dynamic maps establish policy templates that are used during negotiation requests in IPSEC. This occurs during
security associations from a remote IPSEC peer in the VPN, even when all cryptographic map parameters are not
known during new security associations from a remote IPSEC peer. For instance, if you do not know about all the
IPSec remote peers in your network, a Dynamic Map allows you to accept requests for new security associations
from previously unknown peers. Note that these requests are not processed until the IKE authentication has
completed successfully. In short, a Dynamic Map is a policy template used by IPSEC profiles. Dynamic Maps are
not used for initiating IPSEC security associations, but for determining whether or not traffic should be protected
in the VPN.
To view Dynamic Maps that are currently configured, navigate to
Advanced Services > VPN Services > IPSEC
> Dynamic Map
. This page lists dynamic map names, IPSEC profiles that reference them, and the folder.
Select
Add
to create a new
Dynamic Map
, or click the pencil icon next to an existing map to modify settings. The
Add/Edit Details
page contains the fields as described in
Table 82
:
Table 81
Advanced Services > VPN Services > IPSEC Add/Edit Field Descriptions
Field
Default
Description
General Settings
Folder
Top
Set the folder with which the IPSEC profile is associated. The drop-down menu displays
all folders available for association with the IPSEC profile.
Name
Blank
Enter the name of the IPSEC profile.
Other Settings
Maximum MTU Size
(1034-1500 bytes)
1500
Define the Maximum transmission unit (MTU) size in bytes.
Dynamic Maps
Dynamic Maps
Select one or more dynamic maps that the IPSEC profile is to reference. You can add or
edit dynamic maps as required. For additional information, refer to
“Advanced Services
> VPN Services > IPSEC > Dynamic Map” on page 156
.