Netgear FVS318G FVS318G User Manual - Page 114

General, Edit VPN Policy, Ping IP Address, Detection Period, Reconnect after failure count, Apply

Page 114 highlights

ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual 3. In the General menu frame of the Edit VPN Policy menu, locate the keepalive configuration settings, as shown in Figure 5-22: Figure 5-22 4. Click the Yes radio button to enable keepalive. 5. In the Ping IP Address boxes, enter an IP address on the remote LAN. This must be the address of a host that can respond to ICMP ping requests. 6. Enter the Detection Period to set the time between ICMP ping requests. The default is 10 seconds. 7. In Reconnect after failure count, set the number of consecutive missed responses that will be considered a tunnel connection failure. The default is 3 missed responses. When the FVS318G senses a tunnel connection failure, it forces a reestablishment of the tunnel. 8. Click Apply at the bottom of the menu. The Dead Peer Detection feature maintains the IKE SA by exchanging periodic messages with the remote VPN peer. To configure Dead Peer Detection on a configured IKE policy, follow these steps: 1. Select VPN from the main menu and Policies from the submenu. 2. Click the IKE Policies tab, then click the edit button next to the desired VPN policy. 5-28 Virtual Private Networking Using IPsec 1.1 November, 2009

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180

ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual
5-28
Virtual Private Networking Using IPsec
1.1 November, 2009
3.
In the
General
menu frame of the
Edit VPN Policy
menu, locate the keepalive configuration
settings, as shown in
Figure 5-22
:
4.
Click the
Yes
radio button to enable keepalive.
5.
In the
Ping IP Address
boxes, enter an IP address on the remote LAN. This must be the
address of a host that can respond to ICMP ping requests.
6.
Enter the
Detection Period
to set the time between ICMP ping requests. The default is 10
seconds.
7.
In
Reconnect after failure count
, set the number of consecutive missed responses that will be
considered a tunnel connection failure. The default is 3 missed responses. When the FVS318G
senses a tunnel connection failure, it forces a reestablishment of the tunnel.
8.
Click
Apply
at the bottom of the menu.
The Dead Peer Detection feature maintains the IKE SA by exchanging periodic messages with the
remote VPN peer. To configure Dead Peer Detection on a configured IKE policy, follow these
steps:
1.
Select
VPN
from the main menu and
Policies
from the submenu.
2.
Click the
IKE Policies
tab, then click the
edit
button next to the desired VPN policy.
Figure 5-22