Billion BiPAC 7800GZ(L) User Manual page 139

3g/ 802.11g adsl2+ (vpn) firewall router
Hide thumbs Also See for BiPAC 7800GZ(L):
Table of Contents

Advertisement

AES: Stands for Advanced Encryption Standards, you can use 128, 192 or 256 bits
as encryption method.
Integrity Algorithm: Authentication establishes the integrity of the datagram and ensures it is
not tampered with in transmit. There are 2 options: Message Digest 5 (MD5) and Secure Hash
Algorithm (SHA1). SHA1 is more resistant to brute-force attacks than MD5. However, it is slower.
MD5: A one-way hashing algorithm that produces a 128−bit hash.
SHA1: A one-way hashing algorithm that produces a 160−bit hash.
DH Group: It is a public-key cryptography protocol that allows two parties to establish a shared
secret over an unsecured communication channel (i.e. over the Internet). There are 8 modes.
MODP stands for Modular Exponentiation Groups.
SA Lifetime: Specify the number of minutes that a Security Association (SA) will stay active
before new encryption and authentication key will be exchanged. Enter a value to issue an initial
connection request for a new VPN tunnel. Default is 3600 seconds. A short SA time increases
security by forcing the two parties to update the keys. However, every time when the VPN tunnel
re-negotiates, access through the tunnel will be temporarily disconnected.
Phase 2
Encryption Algorithm: Select the encryption algorithm from the drop-down menu. There are
several options: DES, 3DES and AES (128, 192 and 256). 3DES and AES are more powerful but
increase latency.
DES: Stands for Data Encryption Standard, it uses 56 bits as an encryption method.
3DES: Stands for Triple Data Encryption Standard, it uses 168 (56*3) bits as an
encryption method.
AES: Stands for Advanced Encryption Standards, you can use 128, 192 or 256 bits
as encryption method.
Integrity Algorithm: Authentication establishes the integrity of the datagram and ensures it is
not tampered with in transmit. There are 2 options: Message Digest 5 (MD5) and Secure Hash
Algorithm (SHA1). SHA1 is more resistant to brute-force attacks than MD5. However, it is slower.
MD5: A one-way hashing algorithm that produces a 128−bit hash.
SHA1: A one-way hashing algorithm that produces a 160−bit hash.
DH Group: It is a public-key cryptography protocol that allows two parties to establish a shared
secret over an unsecured communication channel (i.e. over the Internet). There are 8 modes.
MODP stands for Modular Exponentiation Groups.
IPSec Lifetime: Specify the number of minutes that IPSec will stay active before new encryption
and authentication key will be exchanged. Enter a value to negotiate and establish secure
authentication. Default is 3600 seconds. A short time increases security by forcing the two parties
to update the keys. However, every time when the VPN tunnel re- negotiates, access through the
tunnel will be temporarily disconnected.
DPD Setting
DPD Function: Check Enable to enable the function.
133

Advertisement

Table of Contents
loading

This manual is also suitable for:

Bipac 7800gz

Table of Contents