06.03.2015 Views

iPECS SBG-1000 User Manual

iPECS SBG-1000 User Manual

iPECS SBG-1000 User Manual

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong> <strong>User</strong> <strong>Manual</strong> (DATA Features)<br />

• Gateway authentication: X.509, RSA signatures and pre-shared secret key<br />

• IP protocols: ESP, AH<br />

• Encryption: AES, 3DES, DES, NULL, HW encryption integration (platform dependent)<br />

• Authentication: MD5, SHA-1<br />

• IP Payload compression<br />

• Interoperability: VPNC Certified IPSec, Windows 2000, Windows NT, FreeS/WAN, FreeBSD,<br />

Checkpoint Firewall-1, Safenet SoftRemote, NetScreen, SSH Sentinel<br />

5.4.1.2 IPSec Settings<br />

Access this feature either from the ‘VPN’ menu item under the ‘Services’ tab, or by clicking its icon<br />

in the ‘Shortcut’ screen. The ‘Internet Protocol Security (IPSec)’ screen appears.<br />

Figure 5.72 Internet Protocol Security (IPSec)<br />

This screen enables you to configure the following settings:<br />

Block Unauthorized IP Select the ‘Enabled’ check box to block unauthorized IP packets to<br />

<strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>. Specify the following parameters:<br />

• Maximum Number of Authentication Failures The maximum number of packets to<br />

authenticate before blocking the origin’s IP address.<br />

• Block Period (in seconds) The timeframe during which <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong> will drop packets<br />

from an unauthorized IP address.<br />

Enable Anti-Replay Protection Select this option to enable dropping of packets that are<br />

recognized (by their sequence number) as already been received.<br />

Connections This section displays the list of IPSec connections. To learn how to create an IPSec<br />

connection, refer to Section 6.4.12.<br />

5.4.1.2.1 Public Key Management<br />

The ‘Settings’ button in the ‘Internet Protocol Security (IPSec)’ screen enables you to manage<br />

<strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>’s public keys.<br />

1. Click the ‘Settings’ button (see Figure 5.72) to view <strong>iPECS</strong> <strong>SBG</strong>-<strong>1000</strong>’s public key. If<br />

necessary, you can copy the public key from the screen that appears.<br />

86

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!