Cisco RV180 Administrator's Manual page 126

Hide thumbs Also See for RV180:
Table of Contents

Advertisement

Configuring Virtual Private Networks (VPNs) and Security
Configuring Advanced VPN Parameters
STEP 6
Cisco RV180/RV180W Administration Guide
in the upstream and downstream traffic flows, the SA may expire
asymmetrically. For example, if the downstream traffic is very high, the
lifebyte for a download stream may expire frequently. The lifebyte of the
upload stream may not expire as frequently. It is recommended that the
values be reasonably set, to reduce the difference in expiry frequencies
of the SAs; otherwise the system may eventually run out of resources as
a result of this asymmetry. The lifebyte specifications are generally
recommended for advanced users only.
Encryption Algorithm—Select the algorithm used to encrypt the data.
Integrity Algorithm—Select the algorithm used to verify the integrity of the
data.
PFS Key Group—Check the Enable box to enable Perfect Forward Secrecy
(PFS) to improve security. While slower, this protocol helps to prevent
eavesdroppers by ensuring that a Diffie-Hellman exchange is performed for
every phase-2 negotiation.
Select IKE Policy—Choose the IKE policy that will define the
characteristics of phase 1 of the negotiation. To add an IKE policy to the list,
click the IKE Policies link. See
page
109.
Click Save to save your settings, or click Cancel to reload the page with the
current settings. Click Back to return to the VPN > IPsec > Advanced VPN Setup
page.
Manual Policy Example
Creating a VPN tunnel between two routers:
Router 1: WAN1=10.0.0.1 LAN=192.168.1.1 Subnet=255.255.255.0
Policy Name: manualVPN
Policy Type: Manual Policy
Local Gateway: WAN1
Remote Endpoint: 10.0.0.2
Local IP: Subnet 192.168.1.0 255.255.255.0
Remote IP: Subnet 192.168.2.0 255.255.255.0
SPI-Incoming: 0x1111
Encryption Algorithm: DES
Key-In: 11112222
Key-Out: 33334444
SPI-Outgoing: 0x2222
Integrity Algorithm: MD5
Key-In: 1122334444332211
Key-Out: 5566778888776655
Router 2: WAN1=10.0.0.2 LAN=192.168.2.1 Subnet=255.255.255.0
Configuring Advanced VPN Parameters,
5
117

Advertisement

Table of Contents
loading

This manual is also suitable for:

Rvrv180w

Table of Contents