Configuring with Web Based Management
4.7 "Security" menu
• Local IP Address
Enter the IP address of the node in the local network.
• Sync Partner IP
Enter the IP address of the synchronization partner.
• Port Number Sync Partner
Enter the port of the synchronization partner.
Port 3780 is assigned as default.
4.7.6
IPsec VPN (SC64x-2C)
4.7.6.1
General
On the WBM page, you configure the basic settings for VPN.
Description
The page contains the following:
• Activate IPsec VPN
Enable or disable the IPsec protocol for VPN.
• Enforce strict CRL Policy
When enabled, the validity of the certificates is checked based on the CRL
(Certificate Revocation List). The certificate revocation list lists the certificates issued
by the certification authority that have lost their validity before the set expiry date.
You configure the certificate revocation list to be used on the WBM page
"Certificates".
• NAT Keep Alive Time Interval
Specify the time interval at which keep alive telegrams are sent. If there is a NAT
device between two VPN endpoints, when there is inactivity, the connection is
deleted from its dynamic NAT table. To prevent this, keepalives are sent.
324
SCALANCE SC-600 Web Based Management (WBM)
Configuration Manual, 10/2021, C79000-G8976-C475-03