Ipsec Protocols (Manual Keys) - HP 635n - JetDirect IPv6/IPsec Print Server Administrator's Manual

Jetdirect print servers
Hide thumbs Also See for 635n - JetDirect IPv6/IPsec Print Server:
Table of Contents

Advertisement

Table 5-13
Advanced IKE Settings page (continued)
Item
IKE Retries
IKE Retransmit Interval

IPsec Protocols (Manual Keys)

Items on the IPsec Protocols page are described below. To use manual keys for key negotiation:
1.
Use this page to specify IPsec protocol encryption and authentication methods to use for Security
Associations (SA) in this rule. Configuration of manual keys will depend on your selections.
2.
Click OK, and proceed to configure the manual keys for this template.
Table 5-14
IPsec Protocols (for Manual Keys) page
Item
Encapsulation Type
Cryptographic Parameters
Manual Keys
Items on the Manual Keys page are described below. Use this page to configure encryption keys and
Security Associations (SA) manually. Because the applicable hosts will also be manually configured,
authentication and dynamic key generation are not needed.
Table 5-15
Manual Keys page
Item
SPI Format
ENWW
Description
Specify the number of times that IKE protocols are to be retried if a failure occurs. Enter
a value from 0 to 20.
Specify the time (in seconds) between successive IKE protocol retries if a failure occurs.
Enter a value from 0 to 5.
Description
Specify how the IPsec protocols selected (ESP or AH) will be encapsulated:
Transport (default): Only the user data in each IP packet is protected, the IP
packet header is not protected.
Tunnel: All packet fields are protected, including the IP packet header.
Specify the encryption protocol and settings to be used.
ESP: Use IPsec Encapsulating Security Payload (ESP) protocol for IP packets.
ESP headers are inserted in packets to ensure privacy and integrity of packet
contents. Select among the supported encryption methods/strengths and
authentication methods to be used for data protection.
AH: Use IPsec Authentication Header (AH) protocol for IP packets. AH headers
are inserted in packets to protect integrity of packet contents through cryptographic
checksums. Select among the supported authentication methods.
CAUTION:
The use of IPsec AH may not function properly in
environments that use Network Address Translation (NAT).
NOTE:
For manual keys, only one authentication method can be selected.
ESP authentication cannot be used if AH is enabled. If you enable ESP and
AH, you must select an AH authentication method.
Description
Choose whether you will use Hexadecimal or Decimal values to specify Security
Parameters Index (SPI) entries.
HP Jetdirect IPsec/Firewall Wizard 111

Advertisement

Table of Contents
loading

Table of Contents