Draytek Vigor2132 Series User Manual page 321

Security giga router, vigor2132 series
Table of Contents

Advertisement

None: Do not apply the IPSec policy. Accordingly,
the VPN connection employed the L2TP without
IPSec policy can be viewed as one pure L2TP
connection.
Nice to Have: Apply the IPSec policy first, if it is
applicable during negotiation. Otherwise, the dial-out
VPN connection becomes one pure L2TP connection.
Must: Specify the IPSec policy to be definitely
applied on the L2TP connection.
User Name - This field is applicable when you select,
PPTP or L2TP with or without IPSec policy above. The
length of the name is limited to 49 characters.
Password - This field is applicable when you select PPTP
or L2TP with or without IPSec policy above. The length of
the password is limited to 15 characters.
PPP Authentication - This field is applicable when you
select, PPTP or L2TP with or without IPSec policy above.
PAP/CHAP/MS-CHAP/MS-CHAPv2 is the most common
selection due to wild compatibility.
VJ compression - This field is applicable when you select
PPTP or L2TP with or without IPSec policy above. VJ
Compression is used for TCP/IP protocol header
compression. Normally set to Yes to improve bandwidth
utilization.
IKE Authentication Method - This group of fields is
applicable for IPSec Tunnels and L2TP with IPSec Policy.
Pre-Shared Key - Input 1-63 characters as pre-shared
key.
Digital Signature (X.509) - Select one predefined
Profiles set in the VPN and Remote Access >>IPSec
Peer Identity.
Peer ID - Select one of the predefined Profiles set in
VPN and Remote Access >>IPSec Peer Identity.
Local ID – Specify a local ID (Alternative Subject
Name First or Subject Name First) to be used for
Dial-in setting in the LAN-to-LAN Profile setup. This
item is optional and can be used only in IKE
aggressive mode.
IPSec Security Method - This group of fields is a must for
IPSec Tunnels and L2TP with IPSec Policy.
Medium AH (Authentication Header) means data
will be authenticated, but not be encrypted. By default,
this option is active.
High (ESP-Encapsulating Security Payload) means
payload (data) will be encrypted and authenticated.
Select from below:
DES without Authentication -Use DES
encryption algorithm and not apply any
authentication scheme.
DES with Authentication-Use DES encryption
algorithm and apply MD5 or SHA-1
313
Vigor2132 Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents