
Copyright 2013 by SIEMENS page 23 / 34
SIMATIC customers have free use of the application tips. These tips are only a general approach to using SIMATIC with various applications. Your
specific application may be different. It is your responsibility to use SIMATIC properly in your applications.
Step 45 – IPsec VPN configuration text file
Open the text file that was created when the certificate was made for example
“Configuration1.m875demo.txt”. It will contain the following information:
IPSec VPN > Certificates
Upload Remote Site Certificate: Configuration 1.Group1.computer.cer
Upload PKCS12 File (.p12): Configuration 1.U0899EF2C@GD406.m875demo.p12
IPSec VPN > Connections > VPN Roadwarrior Mode - Edit Settings
Authentication method: X.509 Remote Certificate
Remote Certificate: Configuration 1.Group1.computer.cer
Remote ID: U1BEF40D2@GD406
IPSec VPN > Connections > VPN Roadwarrior Mode - Edit IKE
Phase 1 - ISAKMP SA
ISAKMP-SA encryption: 3DES-168
ISKAMP-SA hash: SHA-1
ISKAMP-SA mode: Main Mode
ISAKMP-SA lifetime (seconds): 86400
Phase 2 - IPSec SA
IPSec-SA encryption: 3DES-168
IPSec-SA hash: SHA-1
IPSec-SA lifetime (seconds): 86400
NAT-T: On
Activate Dead Peer Detection: Yes
DPD-Delay (seconds): 150
DPD-timeout (seconds): 60
DPD-maximum failure: 5
Comentarios a estos manuales