Vpn: Frequently Asked Questions - Motorola WS2000 - Wireless Switch - Network Management Device System Reference Manual

Wireless switch
Hide thumbs Also See for WS2000 - Wireless Switch - Network Management Device:
Table of Contents

Advertisement

AES 128-bit
AES 192-bit
AES 256-bit
11.Specify a
Key
the key is renegotiated between the two parties.
12.Select the
Diffie-Hellman Group
to exchange a secret key over an insecure medium without any prior secrets. Two algorithms exist, one
768-bit and one 1024-bit algorithm.
Group 1 - 768 bit
Group 2 - 1024 bit
13.If you wish to delete the IPSEC Security Association (SA) with the IKE Security Association (SA) choose
Yes
from the
14.Click the
Ok

4.5.6 VPN: Frequently Asked Questions

WARNING! Disclaimer: Using a VPN connection over the WAN interface is subject to the
limitations of your Internet Service Provider.
4.5.6.1 My tunnel works fine when I use the Subnet Access page to configure my firewall. Now
that I use Advanced Subnet Access, my VPN no longer works. What am I doing wrong?
VPN requires certain packets to be passed through the firewall. Subnet Access automatically inserts these
rules for you when you do VPN. Using Advanced Subnet Access requires the following rules to be in effect
for each tunnel.
An allow inbound rule:
Src
Dst
Transport
Src port
Dst port
Rev NAT
This options selects the Advanced Encryption Standard algorithm in use with 128-bit
(32-character hexadecimal) keys.
This options selects the Advanced Encryption Standard algorithm in use with 192-bit
(48-character hexadecimal) keys.
This options selects the Advanced Encryption Standard algorithm in use with 256-bit
(64-character hexadecimal) keys.
Lifetime, which is the number of seconds that the key is valid. At the end of the lifetime,
to use. The Diffie-Hellman key agreement protocol allows two users
Somewhat faster than the 1024-bit algorithm, but secure enough in most situa-
tions.
Somewhat slower than the 768-bit algorithm, but much more secure and a better
choice for extremely sensitive situations.
Delete IPSEC SA with IKE SA
button to return to the VPN screen.
<Remote Subnet IP range>
<Local Subnet IP range>
ANY
1:65535
1:65535
None
menu. Otherwise select No.
4-21
WAN Configuration

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents