Virtual Private Networking Using IPSec and L2TP Connections
231
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308
5. Click Apply to save your settings. The IKE policy is added to the List of IKE Policies table.
To edit an IKE policy:
1. Select VPN > IPSec VPN. The IPSec VPN sub
menu tabs display with the IKE Policies
screen for IPv4 in view (see Figure 154 on p
age 226).
2. S
pecify the IP version for which you want to edit an IKE policy:
• IP
v4. In the upper right of the screen, the IPv4 radio button is already selected by
default. Go to Step 3.
• IP
v6. Select the IPv6 radio button. The IKE Policies screen for IPv6 displays.
3. In the List of IKE Policies t
able, click the Edit table button to the right of the IKE policy that
you want to edit. The Edit IKE Policy screen displays. This screen shows the same fields as
the Add IKE Policy screen (see Figure 155 on p
age 227).
4. Mo
dify the settings that you wish to change (see the previous table).
5. Click App
ly to save your changes. The modified IKE policy is displayed in the List of IKE
Policies table.
Manage VPN Policies
You can create two types of VPN policies. When you use the VPN Wizard to create a VPN
policy, only the Auto method is available.
• Manua
l. You manually enter all settings (including the keys) for the VPN tunnel on the
VPN firewall and on the remote VPN endpoint. No third-party server or organization is
involved.
• Auto.
Some settings for the VPN tunnel are generated automatically through the use of
the IKE (Internet Key Exchange) Protocol to perform negotiations between the two VPN
XAUTH Configuration
(continued)
Authentication
Type
For an Edge Device configuration, from the drop-down list,
select one of the following authentication types:
• User
Database. XAUTH occurs through the VPN firewall’s
user database. You can add users on the Add User screen
(see User Database Configuration on
page 241).
• Radius PAP. XAUTH occurs through RADIUS Password
Authentication Protocol (PAP). The local user database is
first checked. If the user account is not present in the local
user database, the VPN firewall connects to a RADIUS
server. For more information, see RADIUS Client and
Server Configuration on p
age 241.
• Radius CHAP. XAUT
H occurs through RADIUS Challenge
Handshake Authentication Protocol (CHAP). For more
information, see RADIUS Client and Server Configuration
on page 241.
Username The user name for XAUTH.
Password The password for XAUTH.
Table 53. Add IKE Policy screen settings (continued)
Setting Description