Digi IX40 User Manual page 376

Table of Contents

Advertisement

Virtual Private Networks (VPN)
iii. Repeat to add more phase 1 proposals.
j. Configure the types of encryption, hash, and Diffie-Hellman group to use during phase 2:
i. Move back two levels in the schema:
(config vpn ipsec tunnel ipsec_example ike phase1_proposal 0)> .. ..
(config vpn ipsec tunnel ipsec_example ike)>
ii. Add a phase 2 proposal:
(config vpn ipsec tunnel ipsec_example ike)> add ike phase2_proposal end
(config vpn ipsec tunnel ipsec_example ike phase2_proposal 0)>
iii. Set the type of encryption to use during phase 2:
(config vpn ipsec tunnel ipsec_example ike phase2_proposal 0)> cipher value
(config vpn ipsec tunnel ipsec_example ike phase2_proposal 0)>
where value is one of:
The default is 3des.
iv. Set the type of hash to use during phase 2 to verify communication integrity:
(config vpn ipsec tunnel ipsec_example ike phase2_proposal 0)> hash value
(config vpn ipsec tunnel ipsec_example ike phase2_proposal 0)>
where value is one of:
IX40 User Guide
(config vpn ipsec tunnel ipsec_example ike phase1_proposal)> add end
(config vpn ipsec tunnel ipsec_example ike phase1_proposal 1)>
Repeat the above steps to set the type of encryption, hash, and Diffie-Hellman
group for the additional proposal.
n
3des
n
aes128
n
aes128gcm128
n
aes128gcm64
n
aes128gcm96
n
aes192
n
aes192gcm128
n
aes192gcm64
n
aes192gcm96
n
aes256
n
aes256gcm128
n
aes256gcm64
n
aes256gcm96
n
null
n
md5
n
sha1
IPsec
376

Advertisement

Table of Contents
loading

Table of Contents