This screen displays all the settings that can be changed or modified to the VPN Topology. The screen is categorized based on different options available for each section.
Send IKEv2 cookie notify - Sends cookies to IKEv2 peers as an authentication tool.
Send IKEv2 SPF notify - Sends an invalid Security Parameter Index (SPI) notification to IKEv2 peers when an active IKE security association (SA) exists.
IKEv2 dynamic client proposal - SonicOS provides IKEv2 Dynamic Client Support, which provides a way to configure the Internet Key Exchange (IKE) attributes rather than using the default settings.
Clicking the Configure button launches the Configure IKEv2 Dynamic Client Proposal dialog.
DH Group: Group 1, Group 2,...
256-bit Random ECP Group
384-bit Random ECP Group
521-bit Random ECP Group
192-bit Random ECP Group
224-bit Random ECP Group
Encryption: DES, 3DES (default), AES-128, AES-192, AES-256.
Clean up Active Tunnels when Peer Gateway DNS name resolves to a different IP address : Breaks down SAs associated with old IP addresses and reconnects to the peer gateway.
Send tunnel traps only when IPV4 changes : Reduces the number of VPN tunnel traps that are sent by only sending traps when the tunnel status changes.
MSCHAP and MSCHAPv2 : Click the radio button to select the mode. Click Configure to view additional settings
WINS Server - Configure a WINS server in the WINS Server 1 field. You can configure a second WINS server, also.