Motorola WiNG 5 System Reference Manual page 171

Table of Contents

Advertisement

DPD Retries
NAT Keep Alive
Cookie Challenge
Threshold
38. Refer to the
Auto IPsec Secure Settings
settings:
df bit
IPsec Lifetime (kb)
IPsec Lifetime
(seconds)
Group ID
Authentication Type
Authentication Key
IKE Version
39. Select
OK
to save the updates made to the Global Settings screen. Selecting
configuration.
Use the spinner control to define the number of keep alive messages sent
before to an IPSec VPN client before the tunnel connection is defined as
dead. The available range is from 1 - 100. The default number of messages
is 5.
Define the interval (or frequency) of NAT keep alive messages for dead peer
detection. Options include Seconds (10 - 3,600), Minutes (1 - 60) and Hours
(1). The default setting is 20 seconds.
Use the spinner control to define the threshold (1 - 100) that, when exceeded,
enables the cookie challenge mechanism.
field to define the following IPSec security, lifetime and authentication
Select the DF bit handling technique used for the ESP encapsulating header.
Options include Clear, set and copy. The default setting is Copy.
Set a connection volume lifetime (in kilobytes) for the duration of an IPSec
VPN security association. Once the set volume is exceeded, the association
is timed out. Use the spinner control to set the volume from 500 -
2,147,483,646 kilobytes. The default settings is 4,608,000 kilobytes.
Set a lifetime (in seconds) for the duration of an IPSec VPN security
association. Once the set value is exceeded, the association is timed out. The
available range either Seconds (120 - 86,400), Minutes (2 - 1,440), Hours (1 -
24) or Days (1). The default setting is 3,600 seconds.
Define a 1 - 128 character identifier for an IKE exchange supporting auto
IPSec secure peers.
Use the drop-down menu to select either RSA or PSK (Pre Shared Key) as the
authentication type for secure peer authentication. Rivest, Shamir, and
Adleman (RSA) is an algorithm for public key cryptography. It's the first
algorithm known to be suitable for signing, as well as encryption. The default
setting is RSA.
Enter the 8 - 21 character shared key (password) used for auto IPSec secure
peer authentication.
Use the drop-down menu to select the IKE version used for auto IPSec secure
authentication with the IPSec gateway and other controllers.
Device Configuration 5 - 111
Reset
reverts the screen to its last saved

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents