Black Box LR1104A-T1/E1, LR1112A-T1/E1 manual Black Box IKE and IPSec Defaults, IKE Defaults

Models: LR1102A-T1/E1 LR1112A-T1/E1 LR1104A-T1/E1 LR1114A-T1/E1

1 142
Download 142 pages 53.89 Kb
Page 46
Image 46

Black Box LR11xx Series Router Configurations Guide

HMAC-HSHA1-9696-bits

Table 4 Diffie-Hellman Groups

 

Diffie-Hellman Groups for

Key Size

Authentication

 

Group 1

768-bits

Group 2

1024-bits

5.1.1 Black Box IKE and IPSec Defaults

To minimize configuration required by the user, default IKE and IPSec values have been implemented in Black Box’s encryption scheme.

5.1.1.1 IKE Defaults

The following table lists IKE defaults. When the user creates an IKE policy specifying an IKE peer, an IKE proposal with priority 1 is automatically created. However, to make the IKE policy fully functional, the user must enter a pre-shared key.

Figure 11 IKE Default Values

Parameter Name

Black Box Default

 

Value

Mode

Main mode

Perfect forward secrecy

Disabled

Hash algorithm

SHA1

Encryption algorithm

DES

Authentication method

PreShared

DH Group

Group 1

Lifetime

86400 seconds

Response type

Initiator and responder

5.1.1.2 IPSec Defaults

The following table lists IPSec defaults. When the user creates an IPSec policy and provides the match address, an IPSec proposal with priority 1 is automatically created. When an outbound policy is specified, an inbound policy is automatically created.

48

Page 46
Image 46
Black Box LR1104A-T1/E1, LR1112A-T1/E1, LR1114A-T1/E1, LR1102A-T1/E1 manual Black Box IKE and IPSec Defaults, IKE Defaults