Adding and Editing a Transform Set

To add or edit a profile's VPN transform set:

  1. Select the Configuration tab from the Web UI.

  2. Select Profiles from the Configuration tab.

  3. Select Manage Profiles from the Configuration > Profiles menu.

  4. Select Security.

  5. Select VPN.

  6. Select the Transform Set tab.

  7. Select Add to define a new transform set configuration, Edit to modify an existing configuration or Delete to remove an existing transform set.

    ../images/1440.png

  8. Define the following settings for the new or modified transform set configuration:

    Name

    If creating a new transform set, define a 32 character maximum name to differentiate this configuration from others with similar attributes.

    Authentication Algorithm

    Set the transform sets's authentication scheme used to validate identity credentials. Use the pull-down menu to select either HMAC-SHA or HMAC-MD5. The default setting is HMAC-SHA.

    Encryption Algorithm

    Set the transform set encryption method for protecting transmitted traffic. Options include DES, 3DES, AES, AES-192 and AES-256. The default setting is AES-256.

    Mode

    Use the pull-down menu to select either Tunnel or Transport as the IPSec tunnel type used with the transform set. Tunnel is used for site-to-site VPN and Transport should be used for remote VPN deployments.

  9. Select OK to save the changes made within the Transform Set screen. Select Reset to revert to the last saved configuration