ELTRONIKA ELT-LAN User Manual page 32

Table of Contents

Advertisement

Let's say we want to connect two ELT modems with following IP numbers:
123.45.67.1, 123.45.67.2. First option, DPD interval is time after which the connection is
closed if the other device is not responding. You can put any value here, we will enter
3600 seconds. Then you have to choose local subnet that will be available on remote
side of the connection. It can be single host, network or LAN subnet. Let's say we will be
connecting more devices later so we choose network. On first modem we enter following
settings: IP=192.168.36.1, Network=192.168.36.0 and Netmask=255.255.255.0. The IP
must be set properly according to the network and netmask. Next step is entering
remote subnet. The local subnet on first device must match remote subnet on the second
device and vice versa. We have specified local subnet on second modem with following
settings: IP=192.168.35.1, Network=192.168.35.0, Netmask=255.255.255.0, so on the
first
modem
we
Netmask=255.255.255.0. After specifying local and remote subnets, you should enter
remote gateway which should be other device's IP. In our case we enter 123.45.67.2 on
first modem and 123.45.67.1 on second one.
Afterwards we have to define first phase of the proposal. We choose negotiation
mode-aggressive is less secure, but faster than main. Next setting is device's identifier.
The most common setting is My IP address for PSK authentication and RSA Cert subject
for RSA certificates. Now, please choose encryption, hash algorithm and DH key group-
they must be the same on both sides of connection. Blowfish encryption is usually the
fastest and AES is the slowest but most secure. You can optionally set lifetime of phase 1
or leave the field blank to use default value. The most important setting of phase 1 is
choosing authentication method: Pre-shared key is like password, you have to enter the
same key on both sides. More sophisticated authentication method is using RSA
certificates, but you need to generate certificate and key for every device. You have two
options here: either input other device's certificate in Peer certificate field or add CA
certificate (we will cover that topic later).
ELTRONIKA sp. z.o.o.
Ul. Warszawska 41 lok.7
05-092 Łomianki
enter
following
remote
info@eltronika.com
www.eltronika.com
32
subnet:
Address=192.168.35.0,
- Polska: +48 22 751 97 44
- Česká republika: +420 228 880 487
- Slovensko: +421 904 540 707

Advertisement

Table of Contents
loading

Related Products for ELTRONIKA ELT-LAN

Table of Contents