SunScreen 3.2 Administrator's Overview

add vpngateway

add vpngateway "name_VPN" "name_ADDRESS" SKIP "name_CERTIFICATE"

add vpngateway "name_VPN" "name_ADDRESS" IPSEC IKE( "name_ENCRYPTION_ALGORITHM", name_AUTHENTICATION_ALGORITHM", OAKLEY_GROUP, "name_AUTHENTICATION_METHOD", "name_CERTIFICATE" )

For the IKE form, one of the following three data security parameter options (phase 2 transforms) must be specified. It may be issued after the IPSEC keyword:

AH( "name_AUTHENTICATION_ALGORITHM" )

AH( "name_AUTHENTICATION_ALGORITHM" ) ESP( "name_ENCRYPTION_ALGORITHM" )

ESP( "name_ENCRYPTION_ALGORITHM",name_AUTHENTICATION_ALGORITHM" )

For the SKIP form the following fields are required and can be specified in any order after the vpngateway keyword:

KEY "name_KEY_ALGORITHM"

DATA "name_DATA_ALGORITHM"

MAC "name_MAC_ALGORITHM"

COMPRESSION "name_COMPRESSION_ALGORITHM"

All vpngateway entries with the same name should have exactly the same encryption parameter settings, except for name_CERTIFICATE.

The following fields are optional and can be specified in any order after the vpngateway keyword:

TUNNEL "name_ADDRESS"

COMMENT "comment string"