Netopia 6.3 Stereo System User Manual


 
28
Section 3 General
SafeHarbour VPN IPSec Tunnel
SafeHarbour VPN IPSec Tunnel provides a single, encrypted tunnel to be
terminated on the Gateway, making a secure tunnel available for all LAN-
connected Users. This implementation offers the following:
Eliminates the need for VPN client software on individual PC’s.
Reduces the complexity of tunnel configuration.
Simplifies the ongoing maintenance for secure remote access.
A VPN tunnel is a secure link between two networks interconnected over
an IP network providing a secure, cost-effective alternative to dedicated
leased lines.
SafeHarbour employs VPN standards, including:
Internet Protocol Security (IPSec) suite, a series of protocols including
encryption, authentication, integrity, and replay protection.
Internet Key Exchange (IKE), a management protocol of IPSec.
Adherence to VPN standards allows seamless interoperability between a
Cayman Gateway and another standards-based encryptor. SafeHarbour
supports:
Symmetric encryption protocols DES, 3DES, Blowfish, and CAST
Hash algorithms MD5 and SHA1
Diffie-Hellman groups 1, 2, and 5.
Terms are defined in the Glossary and How To sections.
An important feature of the SafeHarbour VPN IPSec Tunnel is secure
encryption of the configured circuit in both directions.
“HQNetOne”
“RemoteNetTwo”
Encrypted IPSec Tunnel
Tunnel Terminates
at Cayman Gateway
Tunnel Terminates
at Standards-based Gateway
IP Network
SafeHarbour VPN IPSec Tunnel Termination