VPN
Configuring IPsec VPN Policies
STEP 5
STEP 1
STEP 2
STEP 3
Cisco RV315W Broadband Wireless VPN Router Administration Guide
-
SA Lifetime: Specify the values for the time-based lifetime and the flow-
based lifetime.
-
DPD: Click Enable to enable Dead Peer Detection (DPD), or click Disable
to disable it. DPD is a method of detecting a dead Internet Key Exchange
(IKE) peer. This method uses IPsec traffic patterns to minimize the
number of messages required to confirm the availability of a peer. DPD is
used to reclaim the lost resources in case a peer is found dead and it is
also used to perform IKE peer failover. If you enable DPD, specify the
delay time and DPD timeout.
DPD Delay Time: Enter the value of delay time in seconds between
consecutive DPD R-U-THERE messages. DPD R-U-THERE messages are
sent only when IPsec traffic is idle.
DPD Timeout: Enter the value of detection timeout in seconds. If no
response and no traffic over the timeout, declare the peer dead.
Click OK to save your settings.
Setting up a PC to Site VPN
A PC-to-Site VPN policy is used to create a VPN tunnel to allow teleworkers and
business travelers to access to your network by using third-party VPN client soft-
ware, such as TheGreenBow IPsec VPN client 5. 1 and Shrewsoft VPN client 2. 1 7.
To create a PC-to-Site (client-to-gateway) VPN policy:
Click VPN > IPsec VPN. The IPsec VPN page opens.
Click Create to create an IPsec VPN policy.
Enter the following information:
•
Enable: Check to enable the IPsec VPN policy, or uncheck to disable the
policy.
•
Policy Number: Select the identification for the IPsec VPN policy.
•
IPsec Connection Name: Enter a unique name for the IPsec VPN policy.
•
Interface: Select a WAN interface that traffic passes through over the IPsec
VPN tunnel.
•
Connection Type: Select pc-to-site as the type of the VPN connection.
6
70