SmartRG Inc., an ADTRAN company. All Rights Reserved. © 2020
93
Field Name
Description
When you select
Domain
or
, enter the domain name or email address in
the
ID Content
field.
Key Exchange Method
Select the key-exchange method to be used for IPSec. Options are:
l
Auto(IKE)
: This method uses the negotiated key-exchange method for
IPSec. This is the default and recommended for best results.
l
Manual
: This method requires that you configure the details.
Authentication Method
Select the method by which the remote end will authenticate.
l
Pre-Shared Key
: A key is distributed to authorized users for logging into
the system. Enter the key in the
Pre-Shared Key
field.
l
Certificate (X.509)
: A certificate is used for authentication. Select the
certificate file in the
Certificates
field that appears.
Pre-Shared Key
If you selected
Pre-Shared Key
in the
Authentication Method
field, enter the
key here.
Perfect Forward Secrecy
Select whether a session key is derived from a set of long-term keys is com-
promised if one of the long-term keys in the set is compromised.
l
Enable
: Prevents long-term key from being compromised.
l
Disable
: Permits long-term keys to be compromised.
The following fields appear below
Advanced Settings
when
Manual
is selected in the
Key Exchange Method
field.
Encryption Algorithm
Select the encryption algorithm. Options are
3DES
and
AES
.
Encryption Key
Enter the hex value for the selected encryption algorithm.
Authentication Algorithm
Select the authentication algorithm. Options are
MD5
and
SHA1
.
Authentication Key
Enter the hex value for the selected authentication algorithm.
SPI
Enter the hex value for the service provider interface (SPI). The default is
101
.
Advanced IKE Settings
You can configure advanced IKE settings if desired.