D-Link DIR-882 User Manual page 137

Ac2600 wave 2 mu-mimo wi-fi gigabit router with 3g/lte support and 2 usb ports
Hide thumbs Also See for DIR-882:
Table of Contents

Advertisement

DIR-882 AC2600 Wave 2 MU-MIMO Wi-Fi Gigabit Router with
3G/LTE Support and 2 USB Ports
User Manual
Parameter
IKE version
Encryption mode
Second phase
encryption algorithm
Hashing mode
Size of hash
Hashing algorithm
Enable PFS
Second phase
DHgroup type
IPsec-SA lifetime
To specify IP addresses of local and remote subnets for this tunnel, click the ADD button (
the Tunneled Networks section.
If the IPsec tunnel operates over IKEv1 (1 is selected from the IKE version list in the The First
Phase section), you can create only one subnet.
If the IPsec tunnel operates over IKEv2 (2 is selected from the IKE version list in the The First
Phase section), you can create several subnets.
IKE (Internet Key Exchange) is a protocol of keys exchange between
two hosts of VPN connections. Select a version of the protocol from
the drop-down list.
The Second Phase
Select an encryption mode from the drop-down list.
Select an available encryption algorithm from the drop-down list.
Select a hashing mode from the drop-down list.
The length of the hash in bits.
Select a hashing algorithm from the drop-down list.
Move the switch to the right to enable the PFS option (Perfect
Forward Secrecy). If the switch is moved to the right, a new
encryption key exchange will be used for Phase 2. This option
enhances the security level of data transfer, but increases the load on
DIR-882.
A Diffie-Hellman key group for Phase 2. Select a value from the drop-
down list. The drop-down list is available if the Enable PFS switch
is moved to the right.
The lifetime of Phase 2 keys in seconds. After the specified period it is
required to renegotiate the keys. The value specified in this field
should be greater than zero.
Page 137 of 303
Configuring via Web-based Interface
Description
) in

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents