Nortel Networks movianVPN User Manual

Quick Reference
Nortel Contivity Extranet Switch
Version 1.0
Certicom Corp®, Certicom logos, movian™, movianVPN™ are trademarks of Certicom Corp. All other trademarks used are the property of their respective owners
movianVPN User’s Guide describes how to install, configu r e, and use movianVPN. Also provided with movianVPN is the Server Configuration Guide. Aimed at VPN
General Inquiry General Inquiry may be contacted at 510-780-5100. For further product information,
visit our website at www.moviansecurity.com.
ALL INFORMATION CONTAINED IN THIS DOCUMENT ARE PROVIDED "AS IS" WITHOUT WARRANTY OR CONDITIONS OF ANY KIND , E ITHER EXPRE SS OR IMPLIED , INCLUDING, BU T NOT LIMITED TO, THE IMPLIED WARRANTIES O R CONDITIONS OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, OR NON-INFRING E M E NT. CERTI CO M DISCLAIMS ANY LEGAL LIA BILITY OR RESPONSIB ILITY FOR THE ACCURACY, COMPLETENESS, OR USEFULNESS OF ANY INFORMATION, PROCEDURE, METHOD, APPARA T US, PRODUCT, OR PROCESS POSTED HERE. NEITHER CERTICOM, ITS EMPLOYEES, NOR ITS ASSOCIATES ASSUMES ANY RESPONSIBI LI TY FOR LOSS OR DAMAGES RES ULTING FROM THE USE OF INFORMATION CONTAINED IN THE DO CUMENTATION. CERTICOM ASS UMES NO RESPONSIBILITY FOR ERRORS OR OMISSIONS IN THIS DOCUMENTATION.
WITH RESPECT TO ONLY LIMITATION OF DIRECT DAMAGES, UNLESS SPECIFICALLY STATED OTHERWISE IN A LICENSE AGREEMENT EXECUTED BETWEEN YOU AND CERTICOM, YOU AGREE THAT ANY LIABILITY ON THE PART OF CERTICOM FOR BREACH OF THE WARRANTIES CONTAINED HEREIN OR ANY OF THE OTHER PROVISIONS OF THIS AGREEMENT OR ANY OTHER BREACH GIVING RISE TO LIABILITY OR IN ANY OT HER WAY ARISING OUT OF OR RELATED TO THIS AGREEMENT FOR ANY CAUSE OF ACTION WHATSOEVER AND REGARDLESS OF THE FORM OF ACTION (INCLUDING BREACH OF CONTRACT, STRICT LIABILITY, TORT INCLUDING NEGLIGENCE OR ANY OTHER LEGAL OR EQUITABLE THEORY), SHALL BE LIMITED TO YOUR DIRECT DAMAGES IN AN AMOUNT NOT TO EXCEED ONE ($1.00) US DOLLAR
YOU AGREE THAT IN NO EVENT WILL CERTICOM BE LIABLE FOR DA M A GES IN RESPECT OF INCIDENTAL, ORDINARY, PUNITIVE, EXEMPLARY, INDIRECT, SPECIAL, OR CONSEQUENTIAL DA M A GES EVEN IF CER TICOM HAS BEEN AD VISE D OF T HE POSSIB ILITY OF S UCH D AMAGES INCL UDIN G, B UT N O T LIMITED T O , B USINESS INTERRUPTION, LOS T B USINESS REVE NUE, LOST PROFITS, F AILURE TO REALIZE EXPECTED SAVINGS, ECONOMIC LOSS, LOSS OF DATA, LOSS OF BUSIN ESS OPPO RTUNITY OR ANY CLAIM AGAINST YOU BY ANY OTHER PARTY. BECAUSE SOME JURISDICTIONS DO NOT ALLOW THE LIMITATIONS ON IMPLIED WARRANTIES OR THE EXCLUSION OR LIMITATION OF LIABILITY FOR CONSEQUENTIAL OR INCIDENTAL DAMAGES, THE ABOVE LIMITATIONS MAY NOT APPLY TO YOU.
BY USING THIS DOCUMENTATION, YOU AGREE TO BE BOUND BY THE TERMS AS STATED HEREIN. IF YOU DO NOT ACCEPT THESE TERMS AND C ONDITIONS, YOU MUST DEL E TE TH I S DOCUMENT AND NOT MAKE ANY USE OF IT.
ADDITIONAL TERMS AND CO NDITIONS MAY APPLY TO YOU AS PER THE SOFTWARE LICENSE AGREEMENT THAT YOU MAY HAVE EXECUTED WITH CERTICOM.
Copyright Notice © Certicom Corp. 2000, 2001. All rights reserved. This documentation contains
Certicom's proprietary information and any use and distribution are limited to authorized licensees of Certicom. Any unauthorized use, reproduction, and distribution of this documentation is stri ctly prohibited by law."
"Certicom(R), Certicom logos, movian (tm), movian VPN (tm) are trademarks o f Certicom Corp. The movianVPN is covered by one or more of the following U.S. Patents: 6,078,667 , 6,049,815, 5,999,626, 5,955,717, 5,933,504, 5,896,455, 5,889,865, 5,787,028, 5,761,305, 5,600,725, 4,745,568, and corresponding foreign patents. Additional patents pending.
2 - movianVPN Quick Reference for Nortel Contivity Extranet Switch Certicom Corp.
Nortel Contivity Extranet Switch Configuration Quick Reference
This datasheet lists the parameters of the Contivity Extranet Switch (CES) you must configure for interoperability with movianVPN, and (where applicable) suggested settings.

Adding Groups

To add groups to the CES, select Profiles>Groups from the main menu then click Add.
Parameter Default Value New Value
Group Name None Name of new user group Access Hours Anytime Select a range of hours Number of Logins 1 Number of logins. If users have static IP
addresses, they are allowed only one retry Maximum Passwor d Age 0 Any number from 0 to 180 Minimum Password Length 3 From three to 16 alphanumeric characters Allow Alphabetic Passwords Only Disabled Use the default, or select Enabled Static Addresses Enabled Use the default, or select Enabled Idle Timeout 23:59:59 Amount of time the connection can be
idle Forced Logoff 00:00:00 Tim e after wh ich the VPN lo gs off the
user Filters Permit All Select a filter
Certicom Corp. movianVPN Quick Reference for Nortel Contivity Extranet Switch - 3
Nortel Contivity Extranet Switch Configuration Quick Reference

Adding Users

To add users to the CES, select Profiles>Users from the main menu then click Add.
Parameter Default Value New Value
Name None The first and last names of the new user Static IP Address 0.0.0.0 A static IP address for the user (if needed) Subnet Mask 0.0.0.0 The subnet mask for movianVPN User ID None The user’s unique ID Password None The user’s password

Configuring Policies

To configure client policies, select Profiles>Client Policy from the main menu then click Create.
Parameter Default Value New Value
Protocol None UDP or TCP Port None Port number clients use to access the VPN Application Type None Client

Configuring IPSec

To configure IPSec, select Profiles>Groups from the main menu. Click the name of the group for which you want to enable IPSec, then click Configure.
Parameter Default Value New Value
Encryption None
For instructions on ho w to apply the IPS ec settings to user s, see page 28 of the Server Configuration Guide.
4 - movianVPN Quick Reference for Nortel Contivity Extranet Switch Certicom Corp.
ESP-TripleDES with MD5 Integrity
ESP-56-bit DES with MD5 Integrity
ESP-40-bit DES with MD5 Integrity

Configuring the IP Address Pool

Configuring the IP Address Pool
To configure client the IP a ddress pool, select Servers>User IP Address from the main menu, click Address Pool, then click Add.
Parameter Default Value New Value
Start None The first address in the range of IP
addresses (in 24-hour format) End None The last address in the range of IP
addresses (in 24-hour format)

Disabling Perfect Forward Secrecy

To disable Perfect Forward Secrecy (PFS), select Profiles>Groups from the main menu.
Parameter Default Value New Value
Perfect Forward Secrecy Enabled Enable the pulldown menu, then select
disable PFS
Certicom Corp. movianVPN Quick Reference for Nortel Contivity Extranet Switch - 5
Nortel Contivity Extranet Switch Configuration Quick Reference
6 - movianVPN Quick Reference for Nortel Contivity Extranet Switch Certicom Corp.
Loading...