IKE Table Configuration Parameters
Table 68
Parameter Name
Shared Key
[IKEPolicySharedKey]
First to Fourth Proposal
Encryption Type
[IKEPolicyProposalEncryptio
n_X]
First to Fourth Proposal
Authentication Type
[IKEPolicyProposalAuthentic
ation_X]
First to Fourth Proposal DH
Group
[IKEPolicyProposalDHGroup
_X]
336
Description
Determines the pre-shared key (in textual format).
Both peers must register the same pre-shared key for the authentication
process to succeed.
The pre-shared key forms the basis of IPSec security and should
therefore be handled cautiously (in the same way as sensitive
passwords). It is not recommended to use the same pre-shared
key for several connections.
Since the ini file is in plain text format, loading it to the gateway
over a secure network connection is recommended, preferably
over a direct crossed-cable connection from a management PC.
For added confidentiality, use the encoded ini file option
(described in
Secured ini
After it is configured, the value of the pre-shared key cannot be
obtained using Web, ini file or SNMP (see
Configuration Table's
Determines the encryption type used in the main mode negotiation for up to
four proposals.
X stands for the proposal number (0 to 3).
The valid encryption values are:
Not Defined (default)
DES-CBC
[1]
Triple DES-CBC [2]
AES
[3]
Determines the authentication protocol used in the main mode negotiation
for up to four proposals.
X stands for the proposal number (0 to 3).
The valid authentication values are:
Not Defined (default)
HMAC-SHA1-96) [2]
HMAC-MD5-96
[4]
Determines the length of the key created by the DH protocol for up to four
proposals.
X stands for the proposal number (0 to 3).
The valid DH Group values are:
Not Defined (default)
DH-786-Bit
[0]
DH-1024-Bit
[1]
File).
IPSec and IKE
Confidentiality).
V7122 GatewayUser Guide
Need help?
Do you have a question about the V7122 and is the answer not in the manual?