SmartRG Inc., an ADTRAN Company Proprietary and Confidential. All Right Reserved. © 2020
99
4. (
Optional
) To select Phase 1 and Phase 2 specific parameters:
a. Click
Show Advanced Settings
. Additional fields appear.
b. Fill in the fields, using the information provided in the table below.
Field Name
Description
Mode
(
Appears in the
Phase 1
section only
) Select whether to protect information
about your network. Options are:
l
Main
: Protect the identity of the peers. This is the default.
l
Aggressive
: Do not protect the identity of the peers.
Encryption Algorithm
Select the encryption algorithm. Options are
3DES
,
AES - 128
,
AES - 192
,
and
AES - 256
. The default is
A3DES
.
Integrity Algorithm
Select the integrity algorithm. Options are
MD5
and
SHA1
.
Select Diffie-Hellman
Group for Key
Exchange
Select the encryption group for exchanging keys. Options range from
768 bit
-
8192 bit
. The default is
1024 bit
.
Key Life Time
Enter how long the key is effective in seconds. The default is
3600
(60
minutes).
5. Click
Apply/Save
to commit your changes.
Certificate
In this section, you can configure certificates (local and Trusted CA) for the gateway. For more information about certificates, refer
to the ITU X.509 standard.
Local
On this page, you can manage local certificates used to identify the gateway to other users. You can create a new certificate
request locally and have it signed by a certificate authority, or you can import an existing certificate. For additional info regarding
Public Key Infrastructure (PKI), refer to ITU-T X.509.