User's Manual Part 4

VPN Page 35
Configuring Site to Site VPN Policies
Using the VPN Policy Wizard
The VPN Policy Wizard quickly and easily walks you through the steps of configuring a VPN security
policy between two SonicWALL appliances.
The VPN Policy Wizard allows you to create a Typical VPN connection. Using this option, the wizard
creates a VPN policy based on IKE using Preshared Secret.
Using the Custom option in the VPN Policy Wizard allow you to create a VPN policy with your own
configuration options based on one of the following IPSec Keying Modes:
IKE using Preshared Secret
Manual Key
IKE using 3rd Party Certificates
Note:
You need IP addressing information for your local network as well as your remote network. Use the VPN
Planning Sheet to record your information.
Creating a Typical IKE using Preshared Secret VPN Policy
You can create a Typical VPN Policy using the VPN Policy Wizard to configure an IPSec VPN security
association between two SonicWALL appliances.
1. Click VPN Policy Wizard on the VPN>Settings page to launch the wizard. Click Next.
2. Select Typical and click Next.
3. Enter a name for the policy in the Policy Name field. You may want to use the name of a remote office
or other identifying feature so that it is easily identified. Enter the IP address or Fully Qualified Domain
Name of the remote destination in the IPSec Gateway Name or Address field. Click Next.
4. Enter the IP address of the network protected by the remote SonicWALL in the Remote Network
field. This is a private IP address on the remote network. Enter the subnet mask in the Remote
Netmask field. Click Next.
5. Enter a shared secret in the Shared Secret field. Use a combination of letters and numbers to create
a unique secret. Click Next.
6. To enable the VPN policy immediately, click Apply. If you prefer to disable the policy initially, select
Create this Policy Disabled, and then click Apply.
Creating a Custom VPN Policy using IKE and a Preshared Secret
To create a custom VPN policy using IKE and a Preshared Secret, follow these steps:
1. Click VPN Policy Wizard to launch the wizard. Click Next to continue.
2. Select Custom, and click Next.
3. Enter a name for the policy in the Policy Name field. You may want to use the name of a remote office
or other identifying feature so that it is easily identified. Enter the IP address or Fully Qualified Domain
Name of the remote destination in the IPSec Gateway Name or Address field. Click Next.
4. Enter the IP address of the network protected by the remote SonicWALL in the Remote Network
field. This is a private IP address on the remote network. Enter the subnet mask in the Remote
Netmask field. Click Next.