B&B Electronics SPECTRE Configuration Manual page 45

Hide thumbs Also See for SPECTRE:
Table of Contents

Advertisement

B&B Electronics, Inc.
Item
Description
Remote IP
Address
Remote ID
Remote Subnet
Remote Subnet
Mask
Local ID
Local Subnet
Local subnet mask
Key Lifetime
IKE Lifetime
Rekey Margin
Rekey Fuzz
DPD Delay
DPD Timeout
NAT traversal
Aggressive mode
Authenticate Mode
Pre-shared Key
CA Certificate
Remote Certificate
Local Certificate
Local Private Key
Local Passphrase
Extra Options
The certificates and private keys have to be in PEM format.
Description of tunnel.
IP address or domain name of the remote host.
Identification of remote host. The ID contains two parts: a hostname
and a domain-name.
Remote Subnet address
Remote Subnet mask
Identification of local host. The ID contains two parts: a hostname and
a domain-name.
Local subnet address
Local subnet mask
Lifetime key data part of tunnel. The minimum value of this parameter
is 60s. The maximum value is 86400 s.
Lifetime key service part of tunnel. The minimum value of this
parameter is 60s. The maximum value is 86400 s.
Specifies the amount of time before the connection will be re-
established. The maximum value must be less than half of the
parameters IKE and Key Lifetime.
Specifies the maximum percentage by which the Rekey Margin should
be randomly increased to randomize re-keying intervals
Defines time after which IPsec tunnel verification occurs
Defines the timeout (in seconds) for a DPD response.
If address translation between two end points of the IPsec tunnel is
used, it needs to allow NAT Traversal
If this parameter is enabled, the IPsec tunnel will be connected faster,
but encryption will set permanently on 3DES-MD5.
Defines the authentication mode:
Pre-shared key - shared key for both sides.
X.509 Certificate -
Shared key for both sides of the tunnel
This certificate is necessary for Authentication mode x.509.
This certificate is necessary for Authentication mode x.509.
This certificate is necessary for Authentication mode x.509.
This private key is necessary for Authentication mode x.509.
This Local Passphrase is necessary for Authentication mode x.509.
Use this parameter
tunnel, for example security parameters etc.
Table 30: IPsec tunnel configuration
Description
to define additional parameters of the IPsec
45
SPECTRE Configuration Manual
710-10001-02 Rev. 3.0
www.bb-elec.com
www.bb-europe.com

Advertisement

Table of Contents
loading

Table of Contents