Virtual Private Networking Using IPSec and L2TP Connections
219
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
Figure 144.
3. Specify the settings that are explained in the following table.
Table 50. VPN client IPSec configuration settings
Setting Description
VPN Client address Either enter 0.0.0.0 as the IP address, or enter a virtual IP address that is used by
the VPN client in the VPN firewall’s LAN; the computer (for which the VPN client
opened a tunnel) appears in the LAN with this IP address.
Address Type Select Su
bnet address from the drop-down list. This selection defines which
addresses the VPN client can communicate with after the VPN tunnel is
established.
Remote LAN address Enter 19
2.168.1.0 as the remote IP address (that is, LAN network address) of the
gateway that opens the VPN tunnel.
Subnet mask Enter 2
55.255.255.0 as the remote subnet mask of the gateway that opens the VPN
tunnel.
ESP Encryption Select 3D
ES as the encryption algorithm from the drop-down list.
Authentication Select SHA-1 as the authentication algorithm from the drop-down
list.
Mode Select Tu
nnel as the encapsulation mode from the drop-down list.
PFS and Group Select the PFS che
ck box, and then select the DH2 (1024) key group from the
drop-down list.
Note: On the VPN firewall, this key group is referred to as Diffie-Hellman Group 2
(10
24 bit).