Figure 288 Backup Gateway - ZyXEL Communications G.SHDSL.bis 4-port Security Gateway P-793H User Manual

G.shdsl.bis 4-port security gateway
Table of Contents

Advertisement

Figure 288 Backup Gateway

Updating the ARP entries could increase the danger of spoofing attacks. It is only
recommended that you turn on ackGratuitous and force update if you need it like in the
previous backup gateway example. Turning on the force updates option is more dangerous
than leaving it off because the ZyXEL Device updates the ARP table even when there is an
existing entry.
Setting the Key Length for Phase 2 IPSec AES Encryption
Syntax:
ipsec ipsecConfig encryKeyLen <0:128 | 1:192 | 2:256>
By default the ZyXEL Device uses a 128 bit AES encryption key for phase 2 IPSec tunnels.
Use this command to edit an existing VPN rule to use a longer AES encryption key.
See the following example. Say you have a VPN rule one that uses AES for the phase 2
encryption and you want it to use 192 bit encryption.
• Use the first line to start editing the VPN rule.
• The second line sets VPN rule one to use 192 bit AES for the phase 2 encryption.
• The third line displays the results.
P-793H User's Guide
Appendix H Command Interpreter
409

Advertisement

Table of Contents
loading

This manual is also suitable for:

P-793h

Table of Contents