Configure Virtual Private Networking (VPN)
IKE n parameters
Use the following settings for negotiation
The IKE negotiation settings.
Encryption
The encryption algorithm. The options are:
None
•
DES
•
3DES
•
AES (128 bit keys)
•
AES (192 bit keys)
•
AES (256 bit keys)
•
Authentication
The authentication algorithm. The options are:
None
•
MD5
•
SHA1
•
•
SHA256
Mode
The negotiation mode. The options are:
Main
•
Aggressive
•
Historically, setting up IPSec tunnel have involved fixed IP addresses. Today it is more common,
particularly with Internet ISPs, to dynamically allocate the user a temporary IP address as part of
the process of connecting to the Internet. In this case, the source IP address of the party trying to
initiate the tunnel is variable and cannot be preconfigured.
In Main mode, such as non-aggressive, the source IP address must be known so that the router
can use this mode over the Internet if the ISP provides a fixed IP address to the user, or you are
using X.509 certificates.
Digi TransPort WR Routers User Guide
IPsec parameters
437