H3C Technologies H3C SecPath F1000-E User Manual
Page 237
225
Figure 137 IPsec VPN policy configuration wizard: 2/4 (center node)
3.
Configure the parameters as described in
.
Table 16 Configuration items
Item
Description
IPSec VPN Name
Enter the name for the IPsec VPN.
IMPORTANT:
If you enter abc here, the wizard will create an IKE peer named abc_peer, an
IPsec proposal named abc_prop, an IPsec template named abc_temp and
numbered 1, and an IPsec policy named abc_poli and numbered 1. The IKE peer
and IPsec proposal will be referenced in the IPsec template, and the template will
be referenced in the IPsec policy.
IPSec Interface
Select the interface to which you want to apply the IPsec policy.
Branch Gateway Name
Enter the name of the remote gateway at the branch node, which will be used
during IKE negotiation.
Identity
Configuration
Local IP
Address
Specify the ID type of the local end for IKE negotiation phase 1. Options
include:
•
Local IP Address—Uses the IP address of the local gateway as the ID. If you
do not specify the IP address, the default (the primary IP address of the
interface using the security policy) is used.
•
Local Gateway Name—Uses the name of the local gateway as the ID. If you
do not specify the gateway name, the default (the device name) is used.
Local
Gateway
Name
4.
Click Next.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS