D-Link DAP-600P User Manual page 186

Wireless ac2600 wave 2 mu-mimo dual band poe access point / router
Hide thumbs Also See for DAP-600P:
Table of Contents

Advertisement

DAP-600P Wireless AC2600 Wave 2 MU-MIMO Dual Band
PoE Access Point / Router
User Manual
Parameter
IKE-SA lifetime
Aggressive Mode
IKE version
Encryption mode
Encryption key
length
Second phase
encryption algorithm
Hashing mode
Size of hash
Hashing algorithm
Enable PFS
Second phase
DHgroup type
The lifetime of IKE-SA keys in seconds. After the specified period it is
required to renegotiate the keys. The value specified in this field
should be greater than the value specified in the IPsec-SA lifetime
field.
The mode which provides faster operation as it skips several stages of
negotiation of the authentication procedures.
Move the switch to the right to enable the mode.
Move the switch to the left to disable the mode.
The switch is displayed on the page if 1 is selected from the IKE
version drop-down list.
IKE (Internet Key Exchange) is a protocol of keys exchange between
two hosts of VPN connections. Select a version of the protocol from
the drop-down list.
The Second Phase
Select an encryption mode from the drop-down list.
The encryption key length in bits.
Select an available encryption algorithm from the drop-down list.
Select a hashing mode from the drop-down list.
The length of the hash in bits.
Select a hashing algorithm from the drop-down list.
Move the switch to the right to enable the PFS option (Perfect
Forward Secrecy). If the switch is moved to the right, a new
encryption key exchange will be used for Phase 2. This option
enhances the security level of data transfer, but increases the load on
DAP-600P.
A Diffie-Hellman key group for Phase 2. Select a value from the drop-
down list. The drop-down list is available if the Enable PFS switch
is moved to the right.
Page 186 of 235
Configuring via Web-based Interface
Description

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents