NEC ZA-SA3500G Function Manual page 108

Hide thumbs Also See for ZA-SA3500G:
Table of Contents

Advertisement

Source address specification
Peer
IKE SA deletion
Rekey extension of IPsec SA/IKE SA
IKEv1
extension
INITIAL-CONTACT setting
Keepalive
NAT traversal
Commit bit
Key exchange method
Authentication scheme
Supported
Algorithm
IKEv2
DH group
SA
108
Function
Specification|
Encryption
Authentication
PRF
IKE authentication
IKE connection
Lifetime
Rekey timing
Fixed setting
1
Manual deletion
IKE SA deletion when "delete payload" is received
"delete payload" transmission when IKE SA is deleted
Continuous connection
On-demand connection
Single transmission (No additional payload)
DPD
1 session
Phase1: Aggressive mode only
Phase2: Responder only
Automatic key (Key exchange protocol: IKEv2)
Pre-shared key method (pre-shared key)
Electronic certificate
3DES, AES-128, AES-192, AES-256
HMAC-MD5, HMAC-SHA-1, HMAC-SHA-2-256
HMAC-MD5, HMAC-SHA-1, HMAC-SHA-2-256
768bit (group1), 1024bit (group2), 1536bit (group5),
2048bit (group14)
Local ID, remote ID
(IPv4 address, FQDN, Key-ID, and user-FQDN)
Retransmission interval specification, retransmission
frequency specification
Time setting
Remaining time setting
Continuous connection
without traffic
Rekey with traffic
There is traffic, but
rekey is not done
Transmission interval
specification
Retry out frequency
specification
EAP-MD5
Digital signature (site
only)

Advertisement

Table of Contents
loading

Table of Contents