NETGEAR ProSafe FVS318N Cli Reference Manual page 200

Wireless-n 8-port gigabit vpn firewall
Hide thumbs Also See for ProSafe FVS318N:
Table of Contents

Advertisement

ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
Keyword
sa_lifetime_type
sa_lifetime
encryption_algorithm
integrity_algorithm
local_ip
local_subnet_mask
Command example:
FVS318N> vpn ipsec mode_config configure iphone
vpn-config[modeConfig]> first_pool_start_ip 10.100.10.1
vpn-config[modeConfig]> first_pool_end_ip 10.100.10.12
vpn-config[modeConfig]> dns_server_primary_ip 192.168.1.1
vpn-config[modeConfig]> pfs_key_group Y
vpn-config[modeConfig]> dh_group Group2_1024_bit
vpn-config[modeConfig]> sa_lifetime_type Seconds
vpn-config[modeConfig]> sa_lifetime 3600
vpn-config[modeConfig]> encryption_algorithm 3DES
vpn-config[modeConfig]> integrity_algorithm SHA-1
vpn-config[modeConfig]> local_ip 192.168.1.0
vpn-config[modeConfig]> local_subnet_mask 255.255.255.0
vpn-config[modeConfig]> save
Related show command:
Associated Keyword to
Select or Parameter to Type
Seconds or KBytes
seconds or number
None, DES, 3DES, AES-128,
AES-192, or AES-256
MD5 or SHA-1
ipaddress
subnet mask
show vpn ipsec mode_config setup
VPN Mode Configuration Commands
200
Description
Specifies whether the sa_lifetime
keyword is set in seconds or Kbytes.
Depending on the setting of the
sa_lifetime_type keyword, the SA
lifetime in seconds or in KBytes.
Specifies the encryption algorithm, if any, to
negotiate the security association (SA):
• None.
• DES. Data Encryption Standard (DES).
• 3DES. Triple DES.
• AES-128. Advanced Encryption Standard
(AES) with a 128-bit key size.
• AES-192. AES with a 192-bit key size.
• AES-256. AES with a 256-bit key size.
Specifies the authentication (integrity)
algorithm to negotiate the security
association (SA):
• SHA-1. Hash algorithm that produces a
160-bit digest.
• MD5. Hash algorithm that produces a
128-bit digest.
The local IPv4 address to which remote VPN
clients have access. If you do not specify a
local IP address, the wireless VPN firewall's
default LAN IP address is used.
The local subnet mask.

Advertisement

Table of Contents
loading

Table of Contents