Netgear FVS336G-300NAS Specifications Page 400

  • Download
  • Add to my manuals
  • Print
  • Page
    / 693
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 399
Set Up Virtual Private Networking With IPSec Connections
400
ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv3
8. Enter the settings as described in the following table.
Setting Description
Client Pool
Record Name A descriptive name of the Mode Config record for identification and management
purposes.
First Pool Assign at least one range of IP pool addresses in the First Pool fields to enable the
VPN firewall to allocate these to remote VPN clients. The Second Pool and Third
Pool fields are optional. To specify any client pool, enter the starting IP address for
the pool in the Starting IP field, and enter the ending IP address for the pool in the
Ending IP field.
Note: No IP pool must be within the range of the local network IP addresses. Use
a different range of private IP addresses such as 172.16.xxx.xx.
Second Pool
Third Pool
WINS Server If there is a WINS server on the local network, enter its IP address in the Primary
field. You can enter the IP address of a second WINS server in the Secondary
field.
DNS Server In the Primary field, enter the IP address of the DNS server that is used by remote
VPN clients. You can enter the IP address of a second DNS server in the
Secondary field.
Traffic Tunnel Security Level
Note: Generally, the default settings work well for a Mode Config configuration.
PFS Key Group Select the PFS Key Group check box on the left to enable Perfect Forward
Secrecy (PFS), and select a Diffie-Hellman (DH) group from the corresponding
menu on the right. The DH Group sets the strength of the algorithm in bits. The
higher the group, the more secure the exchange. From the menu, select the the
strength:
Group 1 (768 bit)
Group 2 (1024 bit). This is the default setting.
Group 5 (1536 bit)
SA Lifetime The lifetime of the security association (SA) is the period or the amount of
transmitted data after which the SA becomes invalid and must be renegotiated.
From the SA Lifetime menu on the right, select how you must specify the SA
lifetime in the SA Lifetime field on the left:
Seconds. In the SA Lifetime field, enter a period in seconds. The minimum
value is 300 seconds. The default setting is 3600 seconds.
KBytes. In the SA Lifetime field, enter a number of kilobytes. The minimum
value is 1920000 KB.
Encryption Algorithm From the menu, select the algorithm to negotiate the security association (SA):
None. No encryption.
DES. Data Encryption Standard (DES).
3DES. Triple DES. This is the default algorithm.
AES-128. Advanced Encryption Standard (AES) with a 128-bit key size.
AES-192. AES with a 192-bit key size.
AES-256. AES with a 256-bit key size.
Page view 399
1 2 ... 395 396 397 398 399 400 401 402 403 404 405 ... 692 693

Comments to this Manuals

No comments