Mode, Local and peer settings – Compatible Systems 5.4 User Manual

Page 110

Advertising
background image

Interoperability Settings Dialog Box

To access this dialog box, select VPN Port #/Interoperability Settings from
the device view.

Mode

This pull-down menu set the IKE Phase 1 negotiation mode between the
devices. Phase 1 controls how the two devices identify and authenticate each
other so that tunnel sessions can be established.

Main and Aggressive are the two IPSec standard methods for performing the
Phase 1 negotiation. This setting must match the Phase 1 negotiation mode of
the remote peer. Other vendors may support only the Main mode.

Local and Peer Settings

As part of their interoperability function, the following settings specify access
from one area behind a VPN device to another area behind a VPN device.

The Local settings specify what local subnets, hosts, ports and/or protocols
will be reachable via the tunnel.

The Peer settings specify what remote subnets, hosts, ports and/or protocols
will be reachable via the tunnel. The remote tunnel partner (i.e., peer) must
have a matching policy in order for traffic to be successfully tunneled.

Advertising