Draytek Vigor3900 User Manual page 334

Multi-wan security appliance
Hide thumbs Also See for Vigor3900:
Table of Contents

Advertisement

4.
After filling the required information for Basic, click the Advanced tab to open the
following page.
Available parameters are listed as follows:
Item
Aggressive Mode
Local Peer ID
Remote Peer ID
Phase 1 Key Life
Time
Phase 2 Key Life
Time
Perfect Forward
Secrecy Status
Dead Peer
Detection Status
Description
Enable – Click it to enable Aggressive Mode.
Disable – Click it to disable Aggressive Mode.
Type the ID for Vigor3900 which can be configured by the
remote end. It is available only when Aggressive Mode is
enabled.
Peer ID is on behalf of the IP address while identity
authenticating with remote VPN server. The length of the ID
is limited to 47 characters. It is available only when
Aggressive Mode is enabled.
The rekey-renegotiated period of the IKE Phase1 keying
channel of a connection. The acceptable range is from 5 to
480 minutes (8 hours).
The rekey-renegotiated period of the IKE Phase 2 keying
channel of a connection. The acceptable range is from 5 to
480 minutes (8 hours).
Enables the PFS function. A new Diffie-Hellman Key
Exchange is included every time an encryption and/or
authentication key are computed on PFS.
Enable – Click it to enable DPD. When there is no traffic
through the IPSec tunnel, both server and the client will send
the DPD packet to each other to ensure the IPSec tunnel
connection is active still.
326
Vigor3900 Series User's Guide

Advertisement

Table of Contents
loading

Table of Contents