Virtual Private Networking Using IPSec and L2TP Connections
260
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
establishment time. If you require a VPN tunnel to remain connected, you can use the
keep-alive and Dead Peer Detection (DPD) features to prevent the tunnel from being
disconnected and to force a reconnection if the tunnel disconnects for any reason.
For DPD to function, the peer VPN device on the other end of the tunnel also needs to
sup
port DPD. Keep-alive, though less reliable than DPD, does not require any support from
the peer device.
Configure Keep-Alives
The keep-alive feature maintains the IPSec SA by sending periodic ping requests to a host
across the tunnel and monitoring the replies.
To configure the keep-alive feature on a configured VPN policy:
1. Select VPN > IPSec VPN > VPN Policies. The
VPN Policies screen displays the IPv4
settings (see Figure 141 on
page 231).
2. S
pecify the IP version for which you want to edit a VPN policy:
• IPv4. In
the upper right of the screen, the IPv4 radio button is already selected by
default. Go to Step 3.
• IPv6. Select
the IPv6 radio button. The VPN Policies screen for IPv6 displays.
3. In
the List of VPN Policies table, click the Edit table button to the right of the VPN policy that
you want to edit. The Edit VPN Policy screen displays. (The following figure shows only the
top part with the General section of the Edit VPN Policy screen for IPv6.)
Figure 157.