Click
Show Advanced Settings
Settings for Phase 1:
Mode:
You can select
parameters for IKE phase1. Select
carry out negotiation in a shorter amount of time. (Not Recommended-Less Secure)
Note:
The difference bet ween the two is that aggressive mode will pass more information in fewer packets,
with the benefit of slightly faster connection establishment, at the cost of transmitting the identities of
the security firewall in the clear. When using aggressive mode, some configuration parameters such as
Diffie-Hellman groups, and PFS cannot be negotiated, resulting in a greater import ance of having
"compatible" configuration on both ends.
My Identifier Type
address as the ID in IKE negotiation. FQDN: use a name as the ID.
My Identifier
- This field does not need to enter if
Type
field. And the WAN IP will be used automatically as Identifier. If Name type is selected,
enter a name for the local device as the ID in IKE negotiation.
Remote Identifier Type
type is selected. If Name type is selected, enter the name of the remote peer as the ID in IKE
negotiation.
and then you can configure the Advanced Settings.
Main
or
Aggressive.
Aggressive
- Select the local ID type for IKE negotiation.
- The remote gateway IP will be entered automatically if IP Address
Select
Main
to configure the standard negotiation
to configure IKE phase1 of the VPN Tunnel to
Local WAN IP
43
TD-W9970 User Guide
Local Wan
IP: use an IP
is selected in
My Identifier