Siemens 5935, 5930 manual IKE IPSec Proposals Definition

Page 82

SIEMENS 5930/5935 Business Gateway

Chapter 6 Security Setup

User’s Guide

IKE/IPSec Configuration

 

 

IKE IPSec Proposals Definition

IKE IPSec Proposals specify how packets will be encrypted/authenticated for the final SA. To define a new IKE IPSec proposal:

1.Click Create next to IKE IPSec Proposals from the Advanced IKE/IPSec Setup page. This displays the IKE IPSec Proposal Definition page.

2.In IPSec Proposal Name, enter the logical name for the IKE IPSec Proposal Definition. This name is of no importance to the remote IKE peer.

3.From the AH Authentication Scheme drop-down menu, select one of the following to use as the hashing algorithm for Authentication Header (AH) IPSec:

NONE: Requests no AH encapsulation.

MD5: Requests AH encapsulation and authenticate using Message Digest 5.

SHA1: Requests AH encapsulation and authenticate using Secure Hashing Algorithm 1.

4.From the ESP Authentication Scheme drop-down menu, select one of the following ESP specify the hashing algorithm to used for Encapsulating Security Payload (ESP) IPSec:

NONE: Requests no AH encapsulation.

MD5: Requests AH encapsulation and authenticate using Message Digest 5.

SHA1: Requests AH encapsulation and authenticate using Secure Hashing Algorithm 1.

SIEMENS

76

Image 82
Contents 5930/5935 Software License and Limited Warranty Software LicenseGeneral Provisions Table of Contents User Setup InstallationEasy Setup Advanced SetupSecurity Setup Monitoring RouterFront Panel for Back Panel forHardware Specifications for Software Specifications for PPP RFC SecurityFront Panel for Hardware Specifications for Software Specifications for IP Address Translation Package Contents Installation RequirementsPC Requirements Network Service Provider Requirements Hardware Installation PC Configuration Windows 98/MEWindows NT Select TCP/IP Protocol from the Network Protocols listWindows Windows XP Mac OS Mac OSX Linux Configuring the Router Establish ConnectionRouter Information To do this Refer toAccess Easy Setup Wizard Select ProtocolNAT Enabled Bridging EnabledIP Routing Enabled Block Net Bios TrafficPoint-to-Point Protocol over Ethernet over PPPoA Point-to-Point Protocol over Ethernet over RFC1483 RFC RFC 1483 MAC Encapsulated Routing MER Dynamic Host Configuration Protocol Local Area Network Configuration User Setup User ManagementAdding/Modifying a User Account Deleting a User Account Radius User LookupLocal NoneTrusted Secure Mode ConfigurationUntrusted Configure the Radius Server Configure the TacPlus Server Management Classes Class Functional AreasChange Password Click Save and Reboot Access ControlNo access restrictions Telnet WebAdvanced Setup Router Clock Dhcp QoS Configure QoS Policy Siemens To the end Reorder QoS PoliciesBefore policy Routing Table Configuration Dial Backup Click Enable Dial BackupInternal Modem External Modem Switch Management Switch Mirror Configuration Switch Age Time ATM Traffic Shaping Non Real-Time Variable Bit Rate Constant Bit RateReal-Time Variable Bit Rate Unspecified Bit RateCommand Line Interface Security Setup NAT Default DisablePort Number Snmp IP Filter Snmp PasswordEnter the New Password and New Password again Click Add IP RangeSecure Shell Key GeneratorConfigure SSH Load Keys Key Generator Firewall Scripts Stateful Firewall Firewall RulesConfigure Stateful Firewall View Dropped Packets Configure Firewall Rules Protocol/Port ApplicationDelete Firewall Rules IKE/IPSec Configuration Easy IKE/IPSec Setup Advanced IKE/IPSec Setup IKE PeersIKE Peers Definition IKE Proposals Definition IKE IPSec Proposals Definition Siemens IKE IPSec Policies Definition Siemens VPN Log On Monitoring Router System SummaryEthernet Interface Information Remote Connection InformationIP Routing Information System InformationDiagnostics PPPoE SessionInterface Information ATM StatisticsRouting Table Information Files InformationList All Configuration Data Memory UsageTCP/IP Statistics