Digi TransPort WR11 User Manual page 513

Hide thumbs Also See for TransPort WR11:
Table of Contents

Advertisement

Configuring Virtual Private Networking (VPN)
Stop IKE negotiation after n retransmissions
The maximum number of times that IKEv2 will retransmit a negotiation frame as part of the
exchange before failing.
Stop IKE negotiation if no packet received for n seconds
The period of time, in seconds, after which the router will stop the IKE v2 negotiation when no
response to a negotiation packet has been received.
Enable NAT-Traversal
Enables support for NAT Traversal within IKE/IPsec. When one end of an IPsec tunnel is behind
a NAT box, some form of NAT traversal may be required before the IPsec tunnel can pass
packets. Turning NAT Traversal on enables the IKE protocol to discover whether or not one or
both ends of a tunnel is behind a NAT box, and implements a standard NAT traversal protocol if
NAT is not being performed. The version of NAT traversal supported is that described in the
IETF draft document
NAT traversal keep-alive interval n seconds
The interval, in seconds, in which the NAT Traversal keepalive packets are sent to a NAT device
in order to prevent NAT table entry from expiring.
RSA private key file
The name of a X.509 certificate file holding the router's private part of the public/private key
pair in certificate exchanges. See
explanation.
3. Click Apply.
  Command line
Command Instance Parameter Values
ike2
n
ike2
n
ike2
n
ike2
n
ike2
n
ike2
n
Configure IKEv2 Responder parameters
É
  Web
1. Go to Configuration > Network > Virtual Private Networking (VPN) > IPsec > IKEv2 > IKEv2
Responder.
Digi TransPort® Routers User Guide
draft-ietf-ipsec-nat-t-ike-03.
Use X.509 certificates with IPsec tunnels
Equivalent web parameter
retranint
0-255
Retransmit a frame if no response after n seconds
retran
0-9
Stop IKE negotiation after n retransmissions
inactto
0-255
Stop IKE negotiation if no packet received for n
seconds
natt
on, off
Enable NAT-Traversal
natkaint
Integer
NAT traversal keep-alive interval n seconds
privrsakey Filename RSA private key file
Configure Internet Protocol security (IPsec)
for further
513

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents