SONICWALL SONICOS ENHANCED 2.5 ADMINISTRATOR’S GUIDE
179
Creating Site-to-Site VPN Policies
Configuring a VPN Policy with IKE using a Third Party
Certificate
S
Alert: You must have a valid certificate from a third party Certificate Authority installed on your
SonicWALL before you can configure your VPN policy with IKE using a third party certificate.
To create a VPN SA using IKE and third party certificates, follow these steps:
1
In the VPN>Settings page, click Add. The VPN Policy window is displayed.
2
In General tab, select IKE using 3rd Party Certificates.
3
Type a Name for the Security Association in the Name field.
4
Type the IP address or Fully Qualified Domain Name (FQDN) of the primary remote SonicWALL in
the IPSec Primary Gateway Name or Address field. If you have a secondary remote
SonicWALL, enter the IP address or Fully Qualified Domain Name (FQDN) in the IPSec
Secondary Gateway Name or Address field.
5
Select a certificate from the Third Party Certificate menu.
6
Select Distinguished name, E-Mail ID, or Domain name from the Peer Certificate’s ID Type
menu.
7
Type an ID string in the ID string to match field.