18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 14: Configuring Virtual Private Networks<br />

Configuring VPN Security Associations<br />

Adding or modifying<br />

an IP address<br />

442<br />

9 [Conditional] In the Remote IP field, type the IP address <strong>of</strong> the remote<br />

client. This field is available only if you select Fixed IP in the Mode field.<br />

10 [Conditional] If you selected Fixed IP in the Mode field, to add or modify an<br />

entry to the Remote Network / IP list, click New or Modify, respectively. This<br />

lists the IP addresses with which a VPN association can be made. The<br />

addresses specified here typically represent a real network located behind<br />

the client’s <strong>Sidewinder</strong> <strong>G2</strong>. See “Adding or modifying an IP address” for<br />

details.<br />

11 [Conditional] If you selected Dynamic IP Restricted Client in the Mode field,<br />

to add or modify an entry to the Dynamic Virtual Address Range list, click<br />

New or Modify, respectively. This list defines the range <strong>of</strong> addresses a client<br />

can use when initiating a VPN connection. The addresses specified here do<br />

not represent a real network but are virtual addresses. With this option the<br />

client assigns their own IP address, although the address must be within<br />

the approved address range.<br />

12 [Optional] In the Comments field, type a short description for this VPN<br />

association.<br />

Note: You must input information from the Authentication tab before you can save<br />

this Security Association entry. See “Configuring password information on the<br />

Authentication tab” on page 443 for instructions.<br />

The Local Network List window is used to define the range <strong>of</strong> IP addresses that<br />

can be used in a VPN association. To add or modify an IP address, follow the<br />

steps below.<br />

1 In the IP Address field, type the IP address used in this VPN association.<br />

2 In the Number <strong>of</strong> bits in Netmask field, use the up/down arrows to select<br />

the number <strong>of</strong> bits that are significant in the network mask. The value<br />

specified is used to identify the network portion <strong>of</strong> the IP address.<br />

3 Click Add to add the IP address, and then click Close. To exit the window<br />

without adding the IP address, click Close without clicking Add.<br />

Entering information on the Authentication tab<br />

To prevent access to the VPN from Internet hosts masquerading as the VPN<br />

peer, various means <strong>of</strong> authenticating the peer are available. The<br />

Authentication tab defines the authentication method that will be used in this<br />

VPN association. It also defines the characteristics <strong>of</strong> the selected<br />

authentication method. You can select four different methods:<br />

• Password—Select this option if you and the remote end want to use a<br />

password to verify the key exchange. The same password must be used on<br />

both ends <strong>of</strong> this association. See “Configuring password information on<br />

the Authentication tab” on page 443 for detailed information.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!