HotBrick VPN 800/8 F manual Key management

Page 49

HotBrick, Tel: 305 -398-0888, Fax: 305-398-5966

Key management

Key – Key Type: there are two key types (manual key and auto key) available for key exchange management.

Manual Key: If manual key is selected, no key negotiation is needed.

AutoKey (IKE)- There are two types of operation modes that can be used.

Main mode accomplishes a phase one IKE exchange by establishing a secure channel.

Aggressive Mode is another way of accomplishing a phase one exchange. It is faster and simpler than main mode, but does not provide identity protection for the negotiating nodes.

Perfect Forward Secrecy (PFS) – If PFS is enabled, IKE phase 2 negotiation will generate new key values for IP traffic encryption & authentication. Preshared Key – This field authenticates the remote IKE peer.

Key Lifetime- This is specified the lifetime of the IKE generated Key. If the time expires or data is passed over this volume, a new key will be renegotiated. No limit - 0 – is the default.

49

Image 49
Contents Users Guide Firewall VPN 800/8 FTable of Contents QOS Configuration 1Introduction  Supports all common Connection Methods Other Features Physical Details Package ContentsLED Action Condition Tftp Download Default SettingsHotBrick, Tel 305 -398-0888, Fax Procedure Quick InstallationConfiguring the Dual WAN VPN Firewall for your LAN OverviewNo Response? LAN & Dhcp Setup Installing the Dual WAN VPN Firewall on your LAN Flex Ports Quick Installation LAN & Dhcp Dhcp server configuration LAN IP ConfigurationLAN Any IP Setup Dhcp IP address rangeDhcp Client List Optional Address InfoLoaddbalancingB e Load Balancing LLoadbalancingB eConnection validation Advanced WAN Port options Traffic Management Transparant bridge optionWAN IP Account Advanced WAN PPPoEAdvanced WAN Advanced WAN PptpAdvanced configuration Host IP Advanced ConfigurationHost IP Host Network Identity Host network identity Host Network Binding Dynamic routing Advanced configuration RoutingStatic routing Static Routing example Configuring Other Routers on your LANDual WAN VPN Firewall Gateways Routing Table For Router As Default Route For Router Bs Default RouterVirtual Server Connecting to the Virtual Server Advanced configuration virtual server HotBrick, Tel 305 -398-0888, Fax Advanced configuration Special Application To use the Dynamic DNS feature Advanced configuration Dynamic DNSUsing a Special Application on your PC Additional settings Dynamic DNS ServiceWAN Port Binding Advanced Configuration Multi DMZ Advanced Configuration UPnP Setup NAT Configuration Advanced Configuration NAT SettingExternal Filters Configuration Advanced Configuration Advanced FeatureSettings to correct the problem Security Management Security Management Access Filter Security Management Session Limit Security Management System Filter Exeption VPN Configuration VPN Configuration Tunnel to HotBrick Client VPN Configuration Tunnel to HotBrick Unit Action VPN Configuration Advanced settings Security level Key management  Action VPN Configuration Tunnel to 3rd PartyIPSec policy options OptionsVPN configuration VPN preset VPN Configuration SA VPN configuration SA Message Status VPN Configuration VPN LogUndefined messages QoS Features QoS ConfigurationIP TOS Type of Service Feature QoS Configuration Policy Configuration Policy Priority QoS Configuration QoS Setup QoS FeaturePolicy Priority Management Assistant Management assistant Admin PasswordEmail Alert Configuration Enable/Disable Email Alert EmailSMTPServer Password This is the user password Management Assistant Email AlertSystem Information Management Assistant SnmpSyslog Delivery Management Asssistant SyslogManagement Assistant Upgrade Firmware Device status System status Device StatusLAN Information Device Status WAN status NAT Statistics Data NAT Status LAN IP info Device Information Device information Device InformationDevice Statistics ButtonsHotBrick, Tel 305 -398-0888, Fax Appendix a SpecificationsFCC Statement CE Marking WarningOverview TCP/IP Settings Windows TCP/IP SetupAppendix B Using Specify an IP Address Using DhcpStatistics Checking TCP/IP Settings Windows Using a fixed IP Address Use the following IP Address Using DhcpChecking TCP/IP Settings Windows XP Figure B-8 TCP/IP Properties Windows XP General Problems TroubleshootingInternet Access Appendix CVPN 800/8 F To 401VPNX2 or LB-2 HotBrick, Tel 305 -398-0888, Fax