Prestige 662HW Series User's Guide
Table 66 AH and ESP
ESP
DES (default)
Data Encryption Standard (DES) is a widely used
method of data encryption using a private (secret)
key. DES applies a 56-bit key to each 64-bit block of
data.
3DES
Triple DES (3DES) is a variant of DES, which iterates
three times with three separate keys (3 x 56 = 168
bits), effectively doubling the strength of DES.
AES
Advanced Encryption Standard is a newer method of
data encryption that also uses a secret key. This
implementation of AES applies a 128-bit key to 128-
bit blocks of data. AES is faster than 3DES.
Select DES for minimal security and 3DES or AES for
maximum. Select NULL to set up a tunnel without
encryption.
19.3 My IP Address
My IP Address is the WAN IP address of the Prestige. The Prestige has to rebuild the VPN
tunnel if the My IP Address changes after setup.
The following applies if this field is configured as 0.0.0.0:
• The Prestige uses the current Prestige WAN IP address (static or dynamic) to set up the
VPN tunnel.
• If the WAN connection goes down, the Prestige uses the dial backup IP address for the
VPN tunnel when using dial backup or the LAN IP address when using traffic redirect.
See the chapter on WAN for details on dial backup and traffic redirect.
19.4 Secure Gateway Address
Secure Gateway Address is the WAN IP address or domain name of the remote IPSec router
(secure gateway).
If the remote secure gateway has a static WAN IP address, enter it in the Secure Gateway
Address field. You may alternatively enter the remote secure gateway's domain name (if it has
one) in the Secure Gateway Address field.
219
AH
MD5 (default)
MD5 (Message Digest 5) produces a 128-bit
digest to authenticate packet data.
SHA1
SHA1 (Secure Hash Algorithm) produces a
160-bit digest to authenticate packet data.
Select MD5 for minimal security and SHA-1 for
maximum security.
Chapter 19 VPN Screens