168
VPN advanced configuration
NN47928-500
NN47928-500
IKE pre-shared secret configuration parameters
The following section describes the parameters for configuration of IKE preshared secret located
at
Configuration, VPN, VPN Settings, IKE Pre-shared Secret
tab
.
Variable definitions
The following table describes the variables and values for configuring IKE preshared secret.
Authentication Key
Type the IPSec Authentication Key.
IPSec Encryption
Select the IPSec Encryption. Select one of the following options:
•
Data Encryption Standard (DES) – is a standard for encrypting data
that uses a 64 bit key to encrypt data, but only 56 bits are usable. This
standard is considered inadequate for data protection as this standard
do not match the speed of computer.
•
Triple Data Encryption Standard (3DES) – processes each block of
data using a different key each time resulting in a significantly more
secure message.
•
Advanced Encryption Standard (AES128, AES192, AES256) – has a
fixed block size of 128 bits and a key size of 128, 192 or 256 bits. Due
to the fixed block size of 128 bits, AES operates on a 4x4 array of
bytes.
Encryption Keys 1, 2, and 3
The encryption key settings depend on the selected IPSec Encryption:
•
DES - specify a key for Encryption Key 1 only, length 16
•
3DES - specify encryption keys 1, 2, and 3
•
AES 128 - specify a key for Encryption Key 1 only, length 32
•
AES 192 - specify a key for Encryption Key 1 only, length 48
•
AES 256 - specify a key for Encryption Key 1 only, length 64
Outgoing SPI
Type the security parameter index for the outgoing traffic.
Incoming SPI
Type the security parameter index for the incoming traffic.
Anti Replay
Specifies the anti-replay functionality of the security protocol. Select one of
the following:
•
ENABLE - activates the anti-replay functionality of the security
protocol.
•
DISABLE - deactivates the anti-replay functionality of the security
protocol.
The default is ENABLE.
Variable
Value
Policy Action
Select this check box to create a policy action.
Policy Name
Type a IPsec policy name. Each policy must have a unique name.
Existing Policies
Select an existing policy for the IPsec policy.
Interface Name
Select the name of the interface for which you want to apply the policy.
Policy Status
Type the status of the IPsec policy.
Variable
Value
Summary of Contents for BSG12aw 1.0
Page 14: ...14 Introduction NN47928 500 NN47928 500 ...
Page 22: ...22 WAN configuration NN47928 500 NN47928 500 ...
Page 54: ...54 SIP configuration NN47928 500 NN47928 500 ...
Page 80: ...80 QoS configuration NN47928 500 NN47928 500 ...
Page 82: ...82 Advanced configuration NN47928 500 NN47928 500 ...
Page 110: ...110 LAN advanced configuration NN47928 500 NN47928 500 ...
Page 144: ...144 IP routing advanced configuration NN47928 500 NN47928 500 ...
Page 152: ...152 DHCP advanced configuration NN47928 500 NN47928 500 ...
Page 164: ...164 QoS advanced configuration NN47928 500 NN47928 500 ...
Page 176: ...176 VPN advanced configuration NN47928 500 NN47928 500 ...
Page 200: ...200 Port management advanced configuration NN47928 500 NN47928 500 ...