44
Chapter 6: Configuring the Wireless-G VPN Router
The VPN Tab - IPSec VPN
Wireless-G VPN Router with RangeBooster
Authentication Method
. You can select
MD5
or
SHA1
authentication method to generate IPSec
Authentication Header (AH) during ISAKMP.
Group
. This is for Diffie-Hellman key negotiation. There are 7 groups available for ISAKMP SA establishment.
Group 1024, 1536, 2048, 3072, 4096, 6144, and 8192 represent different bits used in Diffie-Hellman mode
operation. The default value is 1024.
ISAKMP Key Lifetime(s)
.The field specifies how long an ISAKMP key channel should been kept before being
renegotiated.
Phase 2:
Encryption Method
. You can select 3 IPSec data connection encryption method including 3DES to indicate
3DES encryption with key length 192 bits, AES to indicate AES encryption with key length 256 bits.
Authentication Method
. You can select
MD5
or
SHA1
authentication method to generate IPSec
Authentication Header (AH) of IPSec data connection.
PFS
. PFS (Perfect Forward Secrecy) ensures that the initial key exchange and IKE proposals are secure. To
use PFS, select
Enabled
.
Group
. The value is the same as Phase 1 Group
IPSec Key Lifetime(s)
. In the Key Lifetime field, you may optionally select to have the key expire at the end of
a time period of your choosing. Enter the number of seconds you'd like the key to be used until a re-key
negotiation between each endpoint is completed.
Tunnel Options
Dead Peer Detection
. You can select
Dead Peer Detection
(DPD) to detect the status of a remote Peer. DPD will
issue DPD packets (ISAKMP format) to query aremote peer, and wait for a reply to recognize that it is still alive.
There are 3 auxiliary options: Detection Delay(s), Detection Timeout(s), and DPD Action for DPD.
Detection Delay(s)
. You can indicate the interval between DPD query packets. The default value is 30 seconds.
Detection Timeout(s)
. You can indicate the length of timeout when DPD cannot hear any DPD reply. The default
value is 120 seconds.
DPD Action
. When DPD Timeout expires, the DPD will take DPD Action to deal with the connection. You can select
Wait for Respons
e to still wait for remote peer response, or select
Suspend Connection
to stop passively
recovering the connection or select
Auto Recover.
Summary of Contents for WRV200
Page 1: ...Model No VPN Router with RangeBooster Wireless G WRV200 WIRELESS GHz 2 4802 11g User Guide ...
Page 10: ...Wireless G VPN Router with RangeBooster ...
Page 124: ...114 Appendix M Regulatory Information Wireless G VPN Router with RangeBooster ...
Page 125: ...115 Appendix M Regulatory Information Wireless G VPN Router with RangeBooster ...
Page 126: ...116 Appendix M Regulatory Information Wireless G VPN Router with RangeBooster ...