Draytek vigor2920 series User Manual page 284

Dual-wan security router
Hide thumbs Also See for vigor2920 series:
Table of Contents

Advertisement

Vigor2920 Series User's Guide
IKE Authentication Method - This group of fields is
applicable for IPSec Tunnels and L2TP with IPSec Policy.
Pre-Shared Key - Input 1-63 characters as pre-shared
key.
Digital Signature (X.509) - Click Digital Signature to
invoke this function and select one predefined Profiles
set in the VPN and Remote Access >>IPSec Peer
Identity as Peer ID.
Local ID – Specify which one will be inspected first.
Alternative Subject Name First – The
alternative subject name (configured in
Certificate Management>>Local Certificate)
will be inspected first.
Subject Name First – The subject name
(configured in Certificate
Management>>Local Certificate) will be
inspected first.
IPSec Security Method - This group of fields is a must for
IPSec Tunnels and L2TP with IPSec Policy.
Medium AH (Authentication Header) means data
will be authenticated, but not be encrypted. By default,
this option is active.
High (ESP-Encapsulating Security Payload)- means
payload (data) will be encrypted and authenticated.
Select from below:
DES without Authentication -Use DES encryption
algorithm and not apply any authentication scheme.
DES with Authentication-Use DES encryption
algorithm and apply MD5 or SHA-1 authentication
algorithm.
3DES without Authentication-Use triple DES
encryption algorithm and not apply any authentication
scheme.
3DES with Authentication-Use triple DES
encryption algorithm and apply MD5 or SHA-1
authentication algorithm.
AES without Authentication-Use AES encryption
algorithm and not apply any authentication scheme.
AES with Authentication-Use AES encryption
algorithm and apply MD5 or SHA-1 authentication
algorithm.
Advanced - Specify mode, proposal and key life of each
IKE phase, Gateway, etc.
The window of advance setup is shown as below:
274

Advertisement

Table of Contents
loading

Table of Contents