NEC ZA-SA3500G Function Manual page 209

Hide thumbs Also See for ZA-SA3500G:
Table of Contents

Advertisement

3. Input IPsec settings.
4. Click the "Apply" button.
5. Click the "Save" button.
Setting Item
IPsec Settings
IPsec Function
IKE Version
VPN Mode
Fragment Method
Static Routing
TCP/MSS Adjustment
IKE Phase 1 Settings
Pre-Shared Key
Value
• Checked: when the IPsec function is
used.
• Unchecked: when the IPsec function
is not used.
• IKEv1: opens the IKEv1 settings
items.
• IKEv2: opens the IKEv2 setting items.
• Policy based: Only traffic that matches
the policy will be subject to VPN
communication.
• Route based: Creates a tunnel
interface and the traffic according to
the routing setting of that interface
will be the target of VPN
communication.
• post-fragment
• pre-fragment
• Checked: When using the default
route
• Unchecked: When not using the
default route
• Checked (Auto): rewrites the MSS
value of TCP packet that passes
through the IPsec tunnel to an
optimum value according to the
encryption algorithm.
• Checked (Fixed): rewrites the MSS
value of TCP packet that passes
through the IPsec tunnel to a
specified fixed value.
• Unchecked: when the MSS value of
the TCP packet that passes through
the IPsec tunnel is not changed.
1 to 64 single-byte characters
ASCII symbols 0x21~0x7e
(Except ", ', `, #, \, $, space, ?)
Remarks
When route based is
selected, it can be
enabled or disabled
Only pre-key sharing
scheme is supported.
|Setting/Setting Confirmation
Initial Value
Disabled
IKEv1
Policy based
post-fragment
Disabled
Disabled
Not set
209

Advertisement

Table of Contents
loading

Table of Contents