VPN Policies Help
This screen allows you to manage VPN policies.
- Traffic covered by a policy will automatically be sent via a VPN tunnel.
- Where traffic is covered by 2 or more policies, the first matching policy will be used.
(In this situation, the order of the policies is important . However, if you only have 1 policy for each remote VPN Endpoint, then the policy order is not important.)
- The VPN tunnel is created according to the parameters in the SA (Security Association).
- The remote VPN Endpoint must have a matching SA, or it will refuse the connection.
There are 2 types of VPN Policies:
- Manual - All settings (including the keys) for the VPN tunnel are manually input at each end (both VPN Endpoints). No 3rd party server or organization is involved.
- Auto - Some parameters for the VPN tunnel are generated automatically. This requires using the IKE (Internet Key Exchange) protocol to perform negotiations between the 2 VPN Endpoints.
Policy Table
The Policy Table contains the following data
- Enable - Use this checkbox to Enable or Disable a Policy as required. Click "Apply" after making any changes.
- Name - Each policy is given a unique name to identify it.
- Type - The Type is "Auto" or "Manual" as explained above.
- Local - IP address or address range on your local LAN. Traffic must be from (or to) these addresses to be covered by this policy.
- Remote - IP address or address range of the remote network. Traffic must be to (or from) these addresses to be covered by this policy.
- ESP - Encapsulating Security Payload. This specifies the encryption protocol used for the VPN data.
Buttons
- Edit - Edit (modify) the selected policy. (Select a policy by clicking on the radio button)
- Delete - Delete the selected policy.
- Apply - Save any changes to the "Enable" setting for each policy.
- Cancel - Discard any unsaved changes to the "Enable" setting for each policy.
- Add Auto Policy - Change to the input screen for an "Auto" policy. When the new policy is saved, it will appear in the bottom row of the Policy Table.
- Add Manual Policy - Change to the input screen for an "Manual" policy. When the new policy is saved, it will appear in the bottom row of the Policy Table.