Mettle Knowledge
Search:     Advanced search
Browse by category:
Contact Us

Setting Up an IPSec VPN Client: Example Given Using Shrewsoft VPN Client

Add comment
Views: 1641
Votes: 0
Comments: 0
Posted: 17 Sep, 2008
by: Knowledge M.
Updated: 31 May, 2010
by: Knowledge M.
After "Shrew Soft" IPsec VPN client has been downloaded and installed in your Windows machine follow the steps below to configure the client. Steps here are given to match IPsec mobile client configuration described elsewhere in this knowledgebase.

Tab1: General
Remote Host - Enter the IP address of Mettle SE's WAN port
Port: 500
Address Method: Use an existing adaptor
MTU: 1500
Address & Netmask: Obtain automatically

Tab2: Client
NAT Traversal: Enable
NAT Traversal Port: 4500
Keep Alive: 15secs
IKE Fragmentation: Enable
Max packet size: 540 bytes
Enable all "Other Options"

Tab3: Name Resolution
Enable all the options

Tab4: Authentication
Authentication Method: Mutual PSK
Local Identity: UFQDN & enter the string below
Remote Identity: IP address
Credentials: Enter the pre shared key configured in Mettle SE

Tab5: Phase1
Exchange type: Aggressive
DH Exchange: Group2
Cipher Algorithm: 3des
Hash algorithm: SHA1
Key life time limit: 3600

Tab6: Phase2
Transform algorithm: esp 3des
HMAC algorithm: sha1
PFS exchange: group2
Compress algorithm: Disabled
Key life time limit: 3600

Tab7: Policy
Leave everything at default settings.




PS: Linuxense Information Systems does not endorse or support ShrewSoft IPsec VPN client. ShrewSoft VPN client is used only as an example.

Also read
document Setting Up IPsec VPN Accounts
document IPsec VPN Troubleshooting

Others in this Category
document Initial Configuration: Setting up Mettle SE in a Local Area Network with Internet Connection.
document Default IP Address & Admin Password (And How To Change It?)
document Configuring DHCP Server
document Enabling The LAN Hosts To Use The Internet Connection (NATing)
document Adding A Second (Or More) Internet Connection To Mettle SE & Setting Up Failover/Load Balancing
document Monitoring The Internet Usage
document How To Turn On/Off The Content Filter & Gateway Antivirus Service
document Fine Tuning The Content Scanner
document Setting Up PPTP VPN accounts
document OpenVPN: Setting Up SSL-VPN accounts
document Setting Up IPsec VPN Accounts
document Deploying A Second LAN With Mettle SE.
document Choosing a VPN Technology
document Adding Firewall Rules
document Setting Up Mettle SE Stack for Active/Passive Fail-Over (CARP)
document Connecting & Securing a Leased Line Connection to Mettle SE
document Port Forwarding (PAT)
document Creating a DNS Entry/Record for the LAN
document Blocking GTalk in the LAN
document Blocking Yahoo! IM from the LAN
document OpenVPN: If VPN Clients Want to Access a Subnet other than "Local network"
document Setting up IPSec Tunnel
document Open VPN Troubleshooting
document PPTP VPN Troubleshooting
document NTP Client/Server
document Firewall: Alias
document Captive Portal
document Virtual IP Address
document OpenVPN: Setting Up a SSL-VPN Client in Windows
document Creating Tagged VLANs
document Cloning Firewall Rules
document IPsec VPN Troubleshooting
document Wake On LAN
document Inbound Loadbalancing
document OpenVPN: Setting up Certification Authority & Generating Certificates
document Changing default webGUI Port and Protocol
document Using Packet Capture
document Using Traceroute
document Package Updates
document OpenVPN: To make OpenVPN client use VPN as the Default Gateway
document OpenVPN: To exclude some Network from using VPN gateway when VPN is set as default gateway for VPN client
document Adding a Static DHCP Lease
document Schedule Based Firewall Rules
document RRD Graphs
document Server Load Balancing
document Firewall Logs
document Backup and Restore Mettle SE Running Configuration
document Event Logging To Remote Syslog Server
document Split DNS
document NAT Reflection/NAT Loopback
document Dynamic DNS



RSS