18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 14: Configuring Virtual Private Networks<br />

Configuring the ISAKMP server<br />

Configuring the<br />

ISAKMP server<br />

402<br />

Figure 172: ISAKMP<br />

Server window<br />

Configuring the<br />

ISAKMP Server<br />

window<br />

If you are using automatic key exchange, you will need to configure the<br />

Internet Security Association and Key Management Protocol (ISAKMP) server<br />

before using any automatic key VPNs. To configure the ISAKMP server, select<br />

VPN Configuration > ISAKMP Server. The following window appears.<br />

The ISAKMP server is used by the <strong>Sidewinder</strong> <strong>G2</strong> to generate and exchange<br />

keys for VPN sessions. To configure the ISAKMP server, follow the steps<br />

below.<br />

1 In the Burbs to Listen on box, select the burbs that will have access to the<br />

ISAKMP server. A check mark appears next to each burb that has access<br />

to the server.<br />

2 To allow ISAKMP to send and receive certificates with remote peers using<br />

the ISAKMP protocol, select the Allow Certificate Negotiation check box.<br />

(If you de-select this option, all certificates used to authenticate remote<br />

peers must either be in the local certificate database or be accessible via<br />

LDAP.)<br />

3 In the P1 Retries field, specify the number <strong>of</strong> times ISAKMP will attempt to<br />

resend a packet for which it has not received a response.<br />

4 In the P1 Retry Timeout field, specify the number <strong>of</strong> seconds ISAKMP will<br />

use for an initial timeout before resending a packet.<br />

5 In the Audit Level field, select the type <strong>of</strong> auditing that should be performed<br />

on the ISAKMP server. The options are:<br />

• Error—Logs only major errors.<br />

• Normal—Logs only major errors and informational messages.<br />

• Verbose—Logs all errors and informational messages.<br />

• Debug—Logs all errors and informational messages. Also logs all<br />

debug information.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!