Siemens se5880 manual IKE IPSec Proposals Definition

Page 74

SIEMENS se5880 Ethernet Security Router

Chapter 6 Security Setup

User’s Guide

IKE/IPSec Configuration

 

 

IKE IPSec Proposals Definition

IKE IPSec Proposals specify how packets will be encrypted/authenticated for the final SA. To define a new IKE IPSec proposal:

1.Click Create next to IKE IPSec Proposals from the Advanced IKE/IPSec Setup page. This displays the IKE IPSec Proposal Definition page.

2.In IPSec Proposal Name, enter the logical name for the IKE IPSec Proposal Definition. This name is of no importance to the remote IKE peer.

3.From the AH Authentication Scheme drop-down menu, select one of the following to use as the hashing algorithm for Authentication Header (AH) IPSec:

NONE: Requests no AH encapsulation.

MD5: Requests AH encapsulation and authenticate using Message Digest 5.

SHA1: Requests AH encapsulation and authenticate using Secure Hashing Algorithm 1.

4.From the ESP Authentication Scheme drop-down menu, select one of the following ESP specify the hashing algorithm to used for Encapsulating Security Payload (ESP) IPSec:

NONE: Requests no AH encapsulation.

MD5: Requests AH encapsulation and authenticate using Message Digest 5.

SHA1: Requests AH encapsulation and authenticate using Secure Hashing Algorithm 1.

SIEMENS

68

Image 74
Contents Se5880 Software License and Limited Warranty Software LicenseGeneral Provisions Table of Contents Security Setup User SetupAdvanced Setup Monitoring Router Front Panel Back PanelHardware Specifications Software Specifications Security Network Service Provider Requirements Installation RequirementsPackage Contents PC RequirementsHardware Installation PC Configuration Windows 98/MEWindows NT Select TCP/IP Protocol from the Network Protocols listWindows Windows XP Mac OS Mac OSX Linux Configuring the Router Establish ConnectionRouter Information To do this Refer toUsing PPPoE Access Easy Setup WizardUntrusted Interface Configuration Not Using PPPoEUsing PPPoE Not Using PPPoEDynamic Host Configuration Protocol Trusted Interface Configuration User Setup User ManagementAdding/Modifying a User Account Deleting a User Account Radius User LookupLocal NoneUntrusted Secure Mode ConfigurationTrusted Configure the Radius Server Configure the TacPlus Server Management Classes Class Functional AreasChange Password Click Save and Reboot Access ControlNo access restrictions Telnet WebAdvanced Setup DMZ ApplyDMZ Router Clock Dhcp QoS Configure QoS Policy Siemens Before policy Reorder QoS PoliciesTo the end Routing Table Configuration Dial Backup Click Enable Dial BackupInternal Modem External Modem Switch Management Switch Mirror Configuration Switch Age Time Command Line Interface File Editor Security Setup NAT Port Number DisableDefault Snmp IP Filter Snmp PasswordEnter the New Password and New Password again Click Add IP RangeSecure Shell Key GeneratorConfigure SSH Load Keys Key Generator Firewall Scripts Stateful Firewall Firewall RulesConfigure Stateful Firewall View Dropped Packets Configure Firewall Rules Protocol/Port ApplicationDelete Firewall Rules IKE/IPSec Configuration Easy IKE/IPSec Setup Advanced IKE/IPSec Setup IKE PeersIKE Peers Definition IKE Proposals Definition IKE IPSec Proposals Definition Siemens IKE IPSec Policies Definition Siemens VPN Log On Monitoring Router System SummaryEthernet Interface Information Remote Connection InformationIP Routing Information System InformationDiagnostics PPPoE SessionInterface Information ATM StatisticsRouting Table Information Files InformationList All Configuration Data Memory UsageTCP/IP Statistics