NEC ZA-SA3500G Function Manual page 220

Hide thumbs Also See for ZA-SA3500G:
Table of Contents

Advertisement

Remote Peer
Local Traffic Selector: 1-5
Remote Traffic Selector:1-
5
Encryption Algorithms
Authentication Algorithms
Lifetime(sec)
Lifetime with Data (Kbyte)
220
Setting/Setting
fixed.
• IP Address: Select when the IP
address of the IPsec peer device
is fixed.
Set the IP Address when "IP
Address" is selected in "Remote
Peer Setting".
Set the IP address and subnet mask
of the local network.
Set the IP address and subnet mask
of the corresponding device
network.
Set the encryption algorithm to be
used at IKE_AUTH
• AES256-CBC
• AES192-CBC
• AES128-CBC
• 3DES-CBC
• NULL
Set the authentication algorithm to
be used at IKE_AUTH.
• HMAC-SHA1-96
• HMAC-SHA2-256
• HMAC-MD5-96
Set the validity period of the IPsec
SA.
Input range is from 300 to 691,200
seconds.
Specify the amount of data to
Confirmation|
Set it according to the
ID of the peer for IPsec
communication. If there
are multiple subnets
subject to IPsec, input
more than one in the
local ID.
Set it according to the
ID of the peer for IPsec
communication. If there
are multiple subnets
subject to IPsec, input
more than one in
remote ID.
Use a value that is
smaller than the one
set at the destination.
Rekey is done at
random between 70%
to 85% of the set
lifetime.
Not set
Not Set
Not Set
AES256-CBC
HMAC-SHA1-96
28800
Not specified

Advertisement

Table of Contents
loading

Table of Contents