SMARTRG INC. PROPRIETARY AND CONFIDENTIAL. ALL RIGHTS RESERVED. COPYRIGHT © 2014
72
Field Name
Description
Key Exchange Method
[Manual, Auto(IKE)] The default of Auto(IKE) which uses the negotiated key-exchange method
for IPSec is recommended.
Authentication Method
[Pre-Shared Key, Certificate (x.509)] Select the method by which the remote end will
authenticate.
Perfect forwarding Secrecy
[Enable, Disable] When enabled, this setting ensures that a session key derived from a set of
long-term keys will not be compromised if one of the long-term keys is compromised in the
future.
If desired, use the
Advanced IKE Settings
area to select Phase 1 and Phase 2 specific parameters.
Certificate
Use the
Advanced Setup -> Certificate
pages to configure certificates for the gateway. Certificates contain public keys as well as the identity of
the owner. They verify a person's identity. You can use Local and Trusted CA certificates on this gateway.
Local
Use the
Local
Certificate page to configure certificates for the gateway. Local certificates are used to identify the gateway to other users. You can
create a new certificate request locally and have it signed by a certificate authority or import an existing certificate.
Consult ITU-T X.509 for additional info regarding Public Key Infrastructure (PKI).
After selecting
Advanced Setup -> Certificate -> Local
from the left navigation bar, click the
Create Certificate Request
button. This function
facilitates the application process for a new certificate. Complete the necessary fields.
The screen shown on the next page will appear. Enter your connection details by completing the appropriate fields.