Setting a Computer

Memo

Set the printer before setting the computer.

  1. Click [Start], and then select [Control Panel] > [System and Security] > [Administrative Tools].

  2. Double-click [Local Security Policy].

  3. Click [IP Security Policies on Local Computer] on the [Local Security Policy] screen.

  4. Select [Create an IP Security policy] from the [Action] menu.

  5. Click [Next] on [IP Security Policy Wizard] screen.

  6. Enter [Name] and [Description], and then click [Next].

  7. Clear the [Activate the default response rule (earlier versions of Windows only).] check box, and then click [Next].

  8. Select the [Edit properties] check box, and then click [Finish].

  9. Select the [General] tab on the [New IP Security Policy Properties] screen.

  10. Click [Settings].

  11. Enter a value (minutes) on [Authenticate and generate a new key after every] in the [Key Exchange Settings] screen.

    Note

    Specify the same value as [LifeTime] in the "Phase1 Proposal" setting in "Setting the Printer". Enter a value in minutes in this step even if [LifeTime] is specified in seconds.

  12. Click [Methods].

  13. Click [Add] on the [Key Exchange Security Methods] screen.

  14. Specify [Integrity algorithm], [Encryption algorithm], and [Diffie-Hellman group].

    Note

    Select the same value specified in [IKE Security Algorithm], [IKE Hash Algorithm], and [Diffie-Hellman group] in the "Phase1 Proposal" setting in "Setting the Printer".

  15. Click [OK].

  16. Click [OK] on the [Key Exchange Security Methods] screen.

  17. Click [OK] on the [Key Exchange Settings] screen.

  18. Select the [Rules] tab on the [New IP Security Policy Properties] screen.

  19. Click [Add].

  20. Click [Next] on [Security Rule Wizard] screen.

  21. Select [This rule does not specify a tunnel] on the [Tunnel Endpoint] screen, and then click [Next].

  22. Select [All network connections] on the [Network Type] screen, and then click [Next].

  23. Click [Add] on the [IP filter lists] screen.

  24. Click [Add] on the [IP filter lists] screen.

  25. Click [Next] on the [IP Filter Wizard] screen.

  26. Click [Next] on [IP Filter Description and Mirrored property] screen.

  27. Click [Next] on [IP Traffic Source] screen.

  28. Click [Next] on [IP Traffic destination] screen.

  29. Click [Next] on [IP Protocol Type] screen.

  30. Click [Finish].

  31. Click [OK] on the [IP filter lists] screen.

  32. Select a new IP filter from the list on the [Security Rule Wizard], and then click [Next].

  33. Click [Add] on the [Filter Action] screen.

  34. Click [Next] on [Filter Action Wizard] screen.

  35. Enter [Name] and [Description] on the [Filter Action Name] screen, and then click [Next].

  36. Select [Negotiate security] on the [Filter Action General Options] screen, and then click [Next].

  37. Select [Do not allow unsecured communication.] on the [Communicating with computers that do not support IPSec] screen, and then click [Next].

  38. Select [CUSTOM] on the [IP Traffic Security] screen, and then click [Settings].

  39. Set on the [Custom Security Method Settings] screen, and then click [OK].

    Note

    Set AH and ESP so that these settings can be the same as the settings that you set in "Phase2 Proposal" in "Setting the Printer".

  40. Click [Next] on the [IP Traffic Security] screen.

  41. Select the [Edit properties] check box, and then click [Finish].

  42. If you want to enable Key PFS, select the [Use session key perfect forward secrecy (PFS)] check box in the [New Filter Action Properties] screen.

  43. If you perform IPSec communication with the IPv6 global address, select the [Accept unsecured communication, but always respond using IPSec] check box.

  44. Click [OK].

  45. Select the new filter action, and then click [Next].

  46. Select the authentication method on the [Authentication Method] screen, and then click [Next].

  47. Click [Finish].

  48. Select [OK] on the [New IP Security Policy Properties] screen.

  49. Select the new IP security policy on the [Local Security Policy] screen.

  50. Select [Assign] from the [Action] menu.

  51. Check that [Yes] is displayed for [Policy Assigned] for the new IP security policy.

  52. Click [X] on the [Local Security Policy] screen.