NEC ZA-SA3500G Function Manual page 109

Hide thumbs Also See for ZA-SA3500G:
Table of Contents

Advertisement

Source address specification
Peer
IKE SA deletion
Rekey extension of IPsec SA/IKE SA
IKEv2
extension
Keepalive
NAT traversal
Negotiation direction limitation
Mode
Security protocol
Supported
algorithm
PFS
IPsec
Fragmentation method
SA
IPsec SA deletion
IPsec
extension
DF bit control
Fixed setting
1
Manual deletion
IKE SA deletion when "delete payload" is received
"delete payload: transmission when IKE SA is deleted
Continuous connection
On-demand connection
DPD
1 session
both, initiator, responder
Tunnel mode
ESP
Encryption
3DES, AES-128, AES-192, AES-256, NULL
HMAC-MD5-96, HMAC-SHA-1-96, HMAC-SHA-2-256-
Authentication
128
768bit (group1), 1024bit (group2), 1536bit (group5),
2048bit (group14), Disabled
post-fragment
pre-fragment
IPsec ID
Local-id/remote-id (IPv4 address and IPv4 prefix)
authentication
Lifetime
Time setting, data amount setting
Rekey timing
Remaining time setting
Manual deletion
IPsec SA deletion when "delete payload" is received
"delete payload" transmission when IPsec SA is
deleted
AUTO (Override DF bit)
Continuous connection
without traffic
Rekey with traffic
There is traffic, but
rekey is not done
Send interval
specification
Retry out frequency
specification
(IKE SA retry
interval/frequency
applies in IKEv2)
Send
Receive
Send
Receive
|Function Specification
109

Advertisement

Table of Contents
loading

Table of Contents