VR-200 16-Port Multi-WAN VPN Router
• 97 •
z
Aggressive Mode:
There are two types of Phase 1 exchanges: Main mode and
Aggressive mode. Aggressive Mode requires half of the main mode messages to be
exchanged in Phase 1 of the SA exchange. If network security is preferred, select
Main mode. When users select the Dynamic IP in Remote Security Gateway Type, it
will be limited as Aggressive Mode.
z
Compress (Support IP Payload compression Protocol (IP Comp)):
16-Port
Multi-WAN VPN Router supports IP Payload compression Protocol. IP Payload
Compression is a protocol to reduce the size of IP datagrams. If Compress is
enabled, 16-Port Multi-WAN VPN Router will propose compression when initiating a
connection. If the responders reject this propose, 16-Port Multi-WAN VPN Router
will not implement the compression. When 16-Port Multi-WAN VPN Router works as
a responder, 16-Port Multi-WAN VPN Router will always accept compression even
without enabling compression.
z
Keep-Alive:
This mechanism helps to keep up the connection of IPSec tunnels.
Whenever a connection is dropped and detected, it will be re-established
immediately.
z
AH Hash Algorithm:
AH (Authentication Header) protocol describe the packet
format and the default standards for packet structure. With the use of AH as the
security protocol, protected is extended forward into IP header to verify the integrity
of the entire packet by use of portions of the original IP header in the hashing
process. There are two algorithms, MD5 and SHA1. MD5 produces a 128-bit digest
to authenticate packet data and SHA1 produces a 160-bit digest to authenticate
packet data. Both sides of tunnel should use the same algorithm.
z
NetBIOS broadcast:
Check the box to enable NetBIOS traffic to pass through the
VPN tunnel. By default, the Router blocks these broadcasts.
z
Dead Peer Detection (DPD):
When DPD is enabled, 16-port VPN Router will send
the periodic HELLO/ACK messages to prove the tunnel liveliness when both peers
of VPN tunnel provide DPD mechanism. Once a dead peer is detected, it will
disconnect the tunnel so the connection can be re-established. The Interval is the
number of seconds between DPD messages. The default is DPD enabled, and