12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Using Global SettingsUsing Global SettingsIn Policy Manager you can select settings that control the actions of many Firebox® features. You setbasic parameters for:• IPSec VPN• ICMP error handling• TCP SYN checking• TCP maximum size adjustment• Authentication idle time-out1 From Policy Manager, select Setup > Global Settings.The Global Settings dialog box appears.2 Configure the different categories of global settings as shown in the sections below.VPNThe global VPN settings are:Ignore DF for IPSecIgnore the setting of the Don’t Fragment bit in the IP header. If you set this to ignore, theFirebox breaks the frame into pieces that can fit in an IPSec packet with the ESP or AH header.IPSec pass throughIf a user must make IPSec connections to a Firebox from behind a different Firebox, you mustkeep the IPSec Pass-through check box clear to enable the IPSec pass-through feature. Forexample, if mobile employees are at a customer location that has a Firebox, they can makeIPSec connections to their network using IPSec. For the local Firebox to correctly allow theoutgoing IPSec connection, you must also add an IPSec policy to Policy Manager.<strong>User</strong> <strong>Guide</strong> 75

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!