| | Add Failover Group IPSEC Connection / Edit IPSEC Connection |
| To Create/Edit IPSEC Connection for secure VPN communication at the IP Layer.To edit IPSec connections. |
| Sample Configuration | |
|---|---|
| Parameter | Mandatory | Default | Description |
|---|---|---|---|
| Name | Yes | Specify a name to identify IPSec connection. Name confines to:
| |
| Description | No | Specify description for the IPSEC connection. Description confines to:
| |
| ConnectionType | Yes | Select Connection type for VPN IPSEC connection from the available options: Remote Access, Site to Site or Host to Host. ConnectionType confines to:
| |
| Policy | Yes | Select Policy to be used for connection from the available options: Default Policy, DefaultHeadOffice, DefaultRemoteAccess, AES128_MD5, DefaultBranchOffice or DefaultL2TP. Policy confines to:
| |
| ActionOnVPNRestart | No | Select action to be taken when VPN Services restarts from the available options: Disable or Respond Only. ActionOnVPNRestart confines to:
| |
| AuthenticationType | No | Select Authentication type based on the Connection type. AuthenticationType confines to:
| |
| PresharedKey/LocalCertificate | Yes | Specify Preshared key or Select Local Certificate to be used by Appliance for authentication based on the Authentication type selected. PresharedKey/LocalCertificate confines to:
| |
| RemoteCertificate/RemoteRSAKey | No | Select Remote Certificate or Specify RSA Key to be used by remote peer for authentication based on the Authentication type selected. RemoteCertificate/RemoteRSAKey confines to:
This options are available if Connection type selected is Site-to-Site or Host-to-Host.. | |
| AliasLocalWANPort | Yes | Select local WAN port from the list. AliasLocalWANPort confines to:
| |
| RemoteHost | Yes | Specify IP Address/Domain name of the remote peer. RemoteHost confines to:
| |
| Failover Group Name | Yes | Specify a name for Failover Group. Failover Group Name confines to:
| |
| Failover Mail Notification | No | Enable to trigger Email notifications to Administrator at failover events. Failover Mail Notification confines to:
| |
| Protocol | No | Select Protocol. Protocol confines to:
| |
| Port | No | Select Port. Port confines to:
| |
| LocalSubnet | No | Select Local LAN subnet. LocalSubnet confines to:
| |
| NATedLAN | No | If NAT Local LAN is selected for Site-to-Site Connection type, select IP Host or Network Host from the list. NATedLAN confines to:
| |
| LocalIDType | Yes | Select ID type for Preshared Key and RSA Key. LocalIDType confines to:
| |
| LocalID | Yes | Specify the value as per selected Local ID type. LocalID confines to:
| |
| AllowNATTraversal | No | Enable NAT Traversal if a NAT device is located between VPN end points. AllowNATTraversal confines to:
| |
| RemoteIDType | Yes | Select Remote ID type. RemoteIDType confines to:
| |
| RemoteID | Yes | Specify the value as per selected Remote ID type. RemoteID confines to:
| |
| UserAuthenticationMode | No | Select mode for User Authentication if required at time of connection. UserAuthenticationMode confines to:
| |
| Username | Yes | Specify Username if User Authentication mode is enabled as Client. Username confines to:
| |
| Password | No | Specify Password if User Authentication mode is enabled as Client. Password confines to:
| |
| User | No | Add all the users which are allowed to connect if authentication mode is enabled as Server. User confines to:
| |
| Protocol | No | Select Protocol to be allowed for negotiations. Protocol confines to:
| |
| LocalPort | Yes | Specify local port number that local VPN peer will use to transport traffic. LocalPort confines to:
| |
| RemotePort | Yes | Specify remote port number that remote VPN peer will use to transport traffic. RemotePort confines to:
| |
| DisconnectOnIdleInterval | No | 0 | Disconnect on idle interval. DisconnectOnIdleInterval confines to:
|
| ActivateOnSave | No | Choose if the connection should be activated right after save. ActivateOnSave confines to:
| |
| Local IP Address | No | Local IP Address for Interface Binding. Local IP Address confines to:
| |
| Bind with Interface | No | Enable or Disable Selection for Interface Binding. Bind with Interface confines to:
| |
| Remote IP Address | No | Remote IP Address for Interface Binding. Remote IP Address confines to:
| |
| SubnetFamily | No | IP Family Selection for Network Detail. SubnetFamily confines to:
| |
| Network | No | Specify the remote LAN network. Network confines to:
|
| Operation | Status | Message |
|---|---|---|
| Add Failover Group IPSEC Connection | 200 | |
| Add Failover Group IPSEC Connection | 500 | |
| Add Failover Group IPSEC Connection | 502 | |
| Add Failover Group IPSEC Connection | 503 | |
| Add Failover Group IPSEC Connection | 504 | |
| Add Failover Group IPSEC Connection | 541 | |
| Add Failover Group IPSEC Connection | 542 | |
| Add Failover Group IPSEC Connection | 543 | |
| Add Failover Group IPSEC Connection | 544 | |
| Add Failover Group IPSEC Connection | 545 | |
| Add Failover Group IPSEC Connection | 546 | |
| Add Failover Group IPSEC Connection | 506 | |
| Add Failover Group IPSEC Connection | 508 | |
| Add Failover Group IPSEC Connection | 510 | |
| Add Failover Group IPSEC Connection | 511 | |
| Add Failover Group IPSEC Connection | 549 | |
| Edit IPSEC Connection | 200 | |
| Edit IPSEC Connection | 201 | |
| Edit IPSEC Connection | 500 | |
| Edit IPSEC Connection | 502 | |
| Edit IPSEC Connection | 503 | |
| Edit IPSEC Connection | 505 | |
| Edit IPSEC Connection | 545 | |
| Edit IPSEC Connection | 546 | |
| Edit IPSEC Connection | 506 | |
| Edit IPSEC Connection | 508 | |
| Edit IPSEC Connection | 510 | |
| Edit IPSEC Connection | 511 | |
| Edit IPSEC Connection | 549 |