Netgear SRX5308 SRX5308 Reference Manual - Page 152

Table 5-3. IPsec VPN Wizard Settings for a Client-to-Gateway Tunnel

Page 152 highlights

ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308 Reference Manual Table 5-3. (IPsec) VPN Wizard Settings for a Client-to-Gateway Tunnel Setting Description (or Subfield and Description) About VPN Wizard This VPN tunnel will connect to the following peers: Select the VPN Client radio button. The default remote FQDN (srx_remote1.com) and the default local FQDN (srx_local1.com) appear in the End Point Information section of the screen. Connection Name and Remote IP Type What is the new Connection Name? Enter a descriptive name for the connection. This name is used to help you to manage the VPN settings; the name is not supplied to the remote VPN endpoint. What is the pre-shared key? Enter a pre-shared key. The key must be entered both here and on the remote VPN gateway, or the remote VPN client. This key must have a minimum length of 8 characters and should not exceed 49 characters. This VPN tunnel will use From the drop-down list, select one of the four WAN interfaces of the following local WAN Interface: VPN firewall to specify which WAN interface the VPN tunnel uses as the local endpoint. Enable RollOver If you have configured the VPN firewall to function in WAN autorollover mode (see "Configuring the Auto-Rollover Mode and Failure Detection Method" on page 2-18), select the Enable RollOver check box. Then, from the corresponding drop-down list, select the backup WAN interface. After an auto-rollover has occurred, the VPN tunnel will be reestablished using the backup WAN interface. End Point Information a What is the Remote Identifier Information? What is the Local Identifier Information? When you select the Client radio button in the About VPN Wizard section of the screen, the default remote FQDN (srx_remote1.com) is automatically entered. Use the default remote FQDN or enter another FQDN. When you select the Client radio button in the About VPN Wizard section of the screen, the default local FQDN (srx_local.1com) is automatically entered. Use the default local FQDN or enter another FQDN. Secure Connection Remote Accessibility What is the remote LAN IP Address? What is the remote LAN Subnet Mask? These fields are masked out for VPN client connections. a. Both local and remote endpoints should be defined as either FQDNs or IP addresses. A combination of an IP address and an FQDN is not supported. 5-10 Virtual Private Networking Using IPsec Connections v1.0, April 2010

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384

ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308 Reference Manual
5-10
Virtual Private Networking Using IPsec Connections
v1.0, April 2010
Table 5-3. (IPsec) VPN Wizard Settings for a Client-to-Gateway Tunnel
Setting
Description (or Subfield and Description)
About VPN Wizard
This VPN tunnel will connect
to the following peers:
Select the
VPN Client
radio button. The default remote FQDN
(srx_remote1.com) and the default local FQDN (srx_local1.com)
appear in the End Point Information section of the screen.
Connection Name and Remote IP Type
What is the new Connection
Name?
Enter a descriptive name for the connection. This name is used to help
you to manage the VPN settings; the name is not supplied to the
remote VPN endpoint.
What is the pre-shared key?
Enter a pre-shared key. The key must be entered both here and on the
remote VPN gateway, or the remote VPN client. This key must have a
minimum length of 8 characters and should not exceed 49 characters.
This VPN tunnel will use
following local WAN Interface:
From the drop-down list, select one of the four WAN interfaces of the
VPN firewall to specify which WAN interface the VPN tunnel uses as
the local endpoint.
Enable RollOver
If you have configured the VPN firewall to function in WAN auto-
rollover mode (see
“Configuring the Auto-Rollover Mode and Failure
Detection Method” on page 2-18
), select the
Enable RollOver
check
box. Then, from the corresponding drop-down list, select the backup
WAN interface. After an auto-rollover has occurred, the VPN tunnel will
be reestablished using the backup WAN interface.
End Point Information
a
a. Both local and remote endpoints should be defined as either FQDNs or IP addresses. A combination of an IP address and
an FQDN is not supported.
What is the Remote Identifier
Information?
When you select the
Client
radio button in the About VPN Wizard
section of the screen, the default remote FQDN (srx_remote1.com) is
automatically entered. Use the default remote FQDN or enter another
FQDN.
What is the Local Identifier
Information?
When you select the
Client
radio button in the About VPN Wizard
section of the screen, the default local FQDN (srx_local.1com) is
automatically entered. Use the default local FQDN or enter another
FQDN.
Secure Connection Remote Accessibility
What is the remote LAN IP
Address?
These fields are masked out for VPN client connections.
What is the remote LAN
Subnet Mask?