TP-Link SafeStream TL-R600VPN User Manual page 53

Gigabit broadband vpn router
Hide thumbs Also See for SafeStream TL-R600VPN:
Table of Contents

Advertisement

TL-R600VPN
Encryption Algorithm:
IKE Security Policy:
PFS Group:
Lifetime:
Status:
Manual Mode
Security Protocol:
Authentication
Algorithm:
Encryption
Algorithm:
Incoming SPI:
In
Authentication
Key:
TM
SafeStream
Gigabit Broadband VPN Router User Guide
Select the Encryption Algorithm for IPsec policy.
The default value is "Auto".
Select the IKE Security Policy for IPsec policy.
Select the PFS (Perfect Forward Security) for IKE
mode to enhance security. This setting should
match the remote peer. With PFS feature, IKE
negotiates to create a new key in Phase2. As it is
independent of the key created in Phase1, this key
can be secure even when the key in Phase1 is
de-encrypted. Without PFS, the key in Phase2 is
created based on the key in Phase1 and thus once
the key in Phase1 is de-encrypted, the key in
Phase2 is easy to be de-encrypted, in this case,
the communication secrecy is threatened.
Specify IPsec SA Lifetime for IKE mode.
Enable or disable the entry.
Select the Security Protocol for IPsec.
Select the Authentication Algorithm for IPsec policy. The
default value is "SHA1".
Select the Encryption Algorithm for IPsec policy. The
default value is "AES256".
Specify the Incoming SPI (Security Parameter Index)
manually. The Incoming SPI here must match the
Outgoing SPI value at the other end of the tunnel, and
vice versa.
Specify the inbound AH Authentication Key manually if AH
protocol is used in the corresponding IPsec Proposal. The
inbound key here must match the outbound AH
47

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents