Chapter 11 IPsec VPN for FortiOS 5.0 : Auto Key phase 1 parameters
  
Auto Key phase 1 parameters
This chapter provides detailed step-by-step procedures for configuring a FortiGate unit to accept a connection from a remote peer or dialup client. The phase 1 parameters identify the remote peer or clients and support authentication through preshared keys or digital certificates. You can increase access security further using peer identifiers, certificate distinguished names, group names, or the FortiGate extended authentication (XAuth) option for authentication purposes.
For more information on phase 1 parameters in the web-based manager, see “Phase 1 configuration”.
The following topics are included in this section:
Overview
Defining the tunnel ends
Choosing main mode or aggressive mode
Authenticating the FortiGate unit
Authenticating remote peers and clients
Defining IKE negotiation parameters
Using XAuth authentication